A drawing of a man wearing a hat with red eyes.

I've Been Hacked

Certified Network & Cyber Security Engineers

It looks like a plain pink background with a gradient.

I've Been Hacked | Cyber Security Specialists Gold Coast | 24/7

1300 714 359

Cloudflare reports thwarting the largest known HTTP-request distributed denial of service attack in history, approximately three times larger than any other previously reported.

The attack in July reached 17.2 million requests per second, the company wrote in  a blog post. For scale, the entirety of the Cloudflare network typically sees around 25 million requests per second in normal traffic.

While that is the largest attack the company has recently seen of the type, Patrick Donahue, product manager at Cloudflare, told SC Media that the botnet behind it has broken previously reported records several times in just the last month.

“We have recently observed several attacks that we suspect were from this group, based on the scale and attack signatures. In the past 30 days, we’ve seen four separate attacks ranging from 7 million requests per second,” he said.

HTTP flooding can be a difficult type of attack to defend. The traffic being directed at a web server appears to be legitimate GET and POST requests that are hard to distinguish from legitimate traffic.

These new attacks appear to be directed through a massive, 20,000  IoT device botnet , with a disproportionate amount of devices, more than a combined 30 percent, located in Indonesia and Brazil. While the location of hacked devices obviously does not speak to the attacker, it may speak to the type of device or component being hijacked for the botnet.

“The rising upper limit [of attack speeds] may exceed mitigation systems of enterprises who have been able to successfully fend off attacks in the past — especially those relying on on-premise hardware that cannot scale in the same manner cloud-based systems can,” said Donahue. “Attacks of this scale are still rare, but the targets have been changing, so companies should be prepared.”

In the same blog, Cloudflare announced a new series of  Mirai DDoS attacks  topping, with a dozen topping a terabit a second in the same week. Mirai, an IoT botnet program with well-circulated source code, is most famous for the cyberattack against Dyn in 2016. Dyn provided DNS services for Twitter, The New York Times, Netflix and others, leading to a short outage at several extremely popular websites. The new Mirai attacks were been detected at a gaming firm and a “APAC-based Internet services, telecommunications and hosting provider,” per the blog.

By Cyber Security Consultant January 30, 2024
Cyber Security is become most needed services for all business and industries in 2024. Every business is concerned about Cyber Security. Security operations (SecOps) leaders face a multifaceted challenge: detecting elusive and novel threats using outdated tools, mitigating the risks posed by unexplored dark data, and managing the resource-intensive nature of staying ahead of evolving […]
A drawing of a man wearing a hat and a mask
By Myles Larden December 11, 2023
This is a subtitle for your new post
A person is holding a credit card in their hand.
By Myles Larden November 21, 2023
Credit Card Skimming on the Rise
By Cyber Security Consultant January 26, 2023
ABOUT CERTIFIED LEAD IMPLEMENTER TRAINING AND EXAMINATION FOR INFORMATION SECURITY MANAGEMENT SYSTEM ISO / IEC 27001 Learn and get certified as a professional in implementation of ISO 27001 standard through our self-paced E-learning interactive course which comprises of 4 modules. Upon completion of these modules, you can appear for an examination and get certified as […]
A thief is fishing for emails on two laptops with a fishing rod.
By ThioJo May 5, 2022
Ive been hacked explaining how to spot a fake email
A person is holding a cell phone with a camera attached to it.
By Whos the boss May 5, 2022
A man is standing in front of a sign that says new scams 2022.
By ThioJo May 5, 2022
A bunch of visa cards are laying on top of a 100 dollar bill
By Wired.com May 5, 2022
ABOUT 500 ECOMMERCE websites were recently found to be compromised by hackers who installed a credit card skimmer that surreptitiously stole sensitive data when visitors attempted to make a purchase.
A silhouette of two people looking at a tinder app on a cell phone.
By Guardian Australia May 5, 2022
Victims ‘financially and emotionally devastated’ by scammers who prey upon vulnerable, often older, people, bureau finds
A man wearing a mask is using a laptop computer
By Myles Larden May 5, 2022
Members of the hacker gang may act in Russia’s interest, but their links to the FSB and Cozy Bear hackers appear ad hoc
More Posts
Share by: