shakedown.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A community for live music fans with roots in the jam scene. Shakedown Social is run by a team of volunteers (led by @clifff and @sethadam1) and funded by donations.

Administered by:

Server stats:

245
active users

#ddos

5 posts4 participants1 post today
dercraig<p>🚀 My new <a href="https://infosec.exchange/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> book "DDoS: Understanding Real-Life Attacks and Mitigation Strategies" is now also available as an eBook! 🎉</p><p>Check it out here: <a href="https://ddos-book.com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">ddos-book.com/</span><span class="invisible"></span></a></p><p>I’ve packed in everything I’ve learned from defending major German government sites against groups like Anonymous, Killnet, and NoName057(16).</p><p>It covers mitigations against <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/crawlers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crawlers</span></a> and many other defenses for all network layers. </p><p>If you find it useful, I’d love it if you could boost and share to help more people defend themselves. ❤️</p><p>Thank you! 🙏</p><p><a href="https://infosec.exchange/tags/DDoSProtection" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoSProtection</span></a> <a href="https://infosec.exchange/tags/NetworkSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NetworkSecurity</span></a> <a href="https://infosec.exchange/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> <a href="https://infosec.exchange/tags/RealWorldDefense" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RealWorldDefense</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/eBook" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>eBook</span></a> <a href="https://infosec.exchange/tags/book" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>book</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@cR0w" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>cR0w</span></a></span> <span class="h-card" translate="no"><a href="https://haunted.computer/@Dio9sys" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Dio9sys</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@da_667" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>da_667</span></a></span> </p><p>Propably Soon: another <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> <a href="https://infosec.space/tags/botnet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>botnet</span></a> made out of them , cuz even the most butchered <a href="https://infosec.space/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a>-based <a href="https://infosec.space/tags/firmware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>firmware</span></a> can run a statically-linked version of <a href="https://infosec.space/tags/curl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>curl</span></a>. </p><ul><li>In fact I'd not be surprised if cybercriminals later on will basically flash their own <a href="https://infosec.space/tags/CFW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CFW</span></a> (custom firmware) to prevent others from pwning their <a href="https://infosec.space/tags/pwned" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>pwned</span></a> boxes and retain persistent control.</li></ul><p>It would certainly make sense IMHO! I just don't do it as a matter of principle!</p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@JessTheUnstill" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>JessTheUnstill</span></a></span> <span class="h-card" translate="no"><a href="https://retro.pizza/@mrencyclopedia" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>mrencyclopedia</span></a></span> or rather the same WiFi Chipset and/or decade-long unmaintained Firmware with more CVEs than clients it's DHCP server can handle and more <a href="https://infosec.space/tags/Shitcoin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Shitcoin</span></a>-<a href="https://infosec.space/tags/mining" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mining</span></a> and <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a>-<a href="https://infosec.space/tags/Botnet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Botnet</span></a>-<a href="https://infosec.space/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> targeting it than it has Ethernet ports in the rear...</p>
Gytis Repečka<p>Attention server admins! Yesterday I've read <a href="https://mastodon.scot/@simon_brooke/114618257884522043" rel="nofollow noopener noreferrer" target="_blank">a post</a> by <span class="h-card"><a href="https://mastodon.scot/@simon_brooke" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>simon_brooke</span></a></span> how nasty AI scraper bots are attacking his self-hosted <span class="h-card"><a href="https://floss.social/@forgejo" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>forgejo</span></a></span> instance. Soon after I'm seeing unusual, periodic traffic spikes on <a href="https://source.gyt.is/" rel="nofollow noopener noreferrer" target="_blank">mine</a> and again - dominated by OpenAI, but some other freeloaders too:</p><pre><code>20.171.207.41 GPTBot/1.2 85.208.96.211 SemrushBot/7~bl 54.36.148.64 AhrefsBot/7.0 114.119.139.53 PetalBot </code></pre><p>With <code>GPTBot</code> and <code>SemrushBot</code> attacking hardest :blobcatscared:</p><p>They've been hammering my little server periodically today as well, slowing down my instance dramatically as if I was experiencing malicious DDoS attack :blobcatfearful: Well, in a sense it is one :blobcatnotlikethis:</p><p>Watch out - it seems corporate AI techbros learned to scrape :forgejo: content and starts doing it on a massive scale :blobcatoutage: Remember when <span class="h-card"><a href="https://social.anoxinon.de/@Codeberg" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Codeberg</span></a></span> was (and repeatedly is) hit?</p><p>For now blocked IP ranges and <code>User-Agent</code> combinations, not sure for how long that will be enough :blobcatumm:</p><p>Please boost for visibility and be prepared!</p><p><a href="https://social.gyt.is/tags/forgejo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>forgejo</span></a> <a href="https://social.gyt.is/tags/developerlife" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>developerlife</span></a> <a href="https://social.gyt.is/tags/coding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>coding</span></a> <a href="https://social.gyt.is/tags/attack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>attack</span></a> <a href="https://social.gyt.is/tags/techbros" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>techbros</span></a> <a href="https://social.gyt.is/tags/aislop" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>aislop</span></a> <a href="https://social.gyt.is/tags/openai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>openai</span></a> <a href="https://social.gyt.is/tags/bots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bots</span></a> <a href="https://social.gyt.is/tags/ddos" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ddos</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@ryanc" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ryanc</span></a></span> using <a href="https://infosec.space/tags/JS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JS</span></a> <a href="https://infosec.space/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> to protect against <a href="https://infosec.space/tags/Bots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bots</span></a> is just as bad as <a href="https://infosec.space/tags/CryptoJacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CryptoJacking</span></a>.</p><ul><li>Noone gives a shit whether it's <a href="https://infosec.space/tags/shitcoins" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>shitcoins</span></a> or <em>"<a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> protection"</em> that makes fan go brr and battery go empty in the end!</li></ul>
Cloudflare<p><a href="https://noc.social/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> attacks are becoming larger, more prevalent, more sophisticated and have out smarted legacy prevention — traditional defenses can’t keep up.</p><p>Read the article to to learn what the future of DDoS protection may look like 🔮 👇👇</p><p><a href="https://www.cloudflare.com/the-net/scale-ddos-security/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">cloudflare.com/the-net/scale-d</span><span class="invisible">dos-security/</span></a></p>
aproitz<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@briankrebs" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>briankrebs</span></a></span> </p><p>Makes you feel <a href="https://mastodon.social/tags/dizzy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dizzy</span></a>. 😂</p><p><a href="https://mastodon.social/tags/ddos" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ddos</span></a> <a href="https://mastodon.social/tags/ddosed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ddosed</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://c.im/@torf" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>torf</span></a></span> <span class="h-card" translate="no"><a href="https://social.coop/@lukeshu" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>lukeshu</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>torproject</span></a></span> well, most high-traffic <a href="https://infosec.space/tags/OnionServices" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OnionServices</span></a> use either <a href="https://infosec.space/tags/OnionBalance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OnionBalance</span></a> and/or <a href="https://infosec.space/tags/CAPTCHAs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHAs</span></a> and/or rely on <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tor</span></a>'s <a href="https://infosec.space/tags/PoW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PoW</span></a> system designed to combat <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> and <a href="https://infosec.space/tags/Bots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bots</span></a>…</p>
OpenStreetMap Ops Team<p>Unfortunately the <a href="https://en.osm.town/tags/OpenStreetMap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenStreetMap</span></a> wiki is very slow today. We are fighting an aggressive web scraper bot. 10,000 of IPs involved. Randomised User-Agent. Ignoring robots.txt <a href="https://en.osm.town/tags/aibot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>aibot</span></a> <a href="https://en.osm.town/tags/ddos" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ddos</span></a></p><p>Update: Fixed. We've been able to mitigate the bot traffic. <a href="https://en.osm.town/tags/fail2ban" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fail2ban</span></a></p>
Stéphane Bortzmeyer<p><a href="https://mastodon.gougere.fr/tags/CENTR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CENTR</span></a> <a href="https://mastodon.gougere.fr/tags/dDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dDoS</span></a> Interesting talk since it was not a talk: after a short introduction, people in the room were told to gather in small groups (with no group hving two persons from the same domain registry), discuss on one of the proposed statements, and synthetize their discussion at the end.<br>Everybody agrees that we should share more information (heard many times in the last 25 years at CENTR...)</p>
Stéphane Bortzmeyer<p><a href="https://mastodon.gougere.fr/tags/CENTR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CENTR</span></a> <a href="https://mastodon.gougere.fr/tags/DNS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNS</span></a> <a href="https://mastodon.gougere.fr/tags/dDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dDoS</span></a> "Towards a more effective strategy to deflect DDoS attacks on critical DNS anycast infrastructure"</p><p>With a DNSCON scale for problems (DNSCON 5 is all good, DNSCON 2, you start RTBH, DNSCON 1 is complete failure, see info on <a href="https://status.sidn.com" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">status.sidn.com</span><span class="invisible"></span></a>).</p>
Anonymous 🐈️🐾☕🍵🏴🇵🇸 :af:<p>🚨DDoS Alert🚨</p><p>AnonSec claim to have taken down 5 Israeli Government websites.</p><p>The websites seem to be down at this moment.</p><p>Actor: AnonSec <br>Method: <a href="https://kolektiva.social/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a><br>Date: April 7, 2025</p><p><a href="https://kolektiva.social/tags/Hacktivism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hacktivism</span></a> <a href="https://kolektiva.social/tags/CyberAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberAttack</span></a> <a href="https://kolektiva.social/tags/CyberThreat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberThreat</span></a> <a href="https://kolektiva.social/tags/Darkweb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Darkweb</span></a> <a href="https://kolektiva.social/tags/AnonSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AnonSec</span></a> <a href="https://kolektiva.social/tags/CyberNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberNews</span></a> <a href="https://kolektiva.social/tags/News" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>News</span></a> <a href="https://kolektiva.social/tags/NewsUpdate" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NewsUpdate</span></a> <a href="https://kolektiva.social/tags/HackerNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HackerNews</span></a> <a href="https://kolektiva.social/tags/SpyoSecure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SpyoSecure</span></a> <a href="https://kolektiva.social/tags/SpyoSecureNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SpyoSecureNews</span></a> <a href="https://kolektiva.social/tags/OpIsrael" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpIsrael</span></a></p>
KrebsOnSecurity RSS<p>KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS</p><p><a href="https://krebsonsecurity.com/2025/05/krebsonsecurity-hit-with-near-record-6-3-tbps-ddos/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">krebsonsecurity.com/2025/05/kr</span><span class="invisible">ebsonsecurity-hit-with-near-record-6-3-tbps-ddos/</span></a></p><p> <a href="https://burn.capital/tags/U" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>U</span></a>.S.DepartmentofJustice <a href="https://burn.capital/tags/InternetofThings" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InternetofThings</span></a>(IoT) <a href="https://burn.capital/tags/KaikeSouthierLeite" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KaikeSouthierLeite</span></a> <a href="https://burn.capital/tags/Ne" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ne</span></a>'er-Do-WellNews <a href="https://burn.capital/tags/ALittleSunshine" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ALittleSunshine</span></a> <a href="https://burn.capital/tags/TheComingStorm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TheComingStorm</span></a> <a href="https://burn.capital/tags/DamianMenscher" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DamianMenscher</span></a> <a href="https://burn.capital/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a>-for-Hire <a href="https://burn.capital/tags/ProjectShield" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ProjectShield</span></a> <a href="https://burn.capital/tags/Aisurubotnet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Aisurubotnet</span></a> <a href="https://burn.capital/tags/Breadcrumbs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Breadcrumbs</span></a> <a href="https://burn.capital/tags/QiAnXinXLab" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>QiAnXinXLab</span></a> <a href="https://burn.capital/tags/CloudFlare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CloudFlare</span></a> <a href="https://burn.capital/tags/stresser" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>stresser</span></a> <a href="https://burn.capital/tags/Akamai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Akamai</span></a> <a href="https://burn.capital/tags/booter" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>booter</span></a> <a href="https://burn.capital/tags/Jigsaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Jigsaw</span></a> <a href="https://burn.capital/tags/Forky" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Forky</span></a> <a href="https://burn.capital/tags/mirai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mirai</span></a> <a href="https://burn.capital/tags/yfork" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>yfork</span></a> <a href="https://burn.capital/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> <a href="https://burn.capital/tags/fbi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fbi</span></a></p>
Dawn Tåke 🌙 :sparkletrans:<p>ByWater is reporting that scraper bots are inadvertently(?) DDoSing several systems. </p><p>So that's fun. </p><p>After the last time we set up Cloudflare captchas, but it's still causing slowness.</p><p><a href="https://tech.lgbt/tags/Libraries" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Libraries</span></a> <a href="https://tech.lgbt/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://tech.lgbt/tags/LLM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LLM</span></a> <a href="https://tech.lgbt/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> <a href="https://tech.lgbt/tags/DirectDenialOfService" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DirectDenialOfService</span></a> <a href="https://tech.lgbt/tags/TourmaLibrarian" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TourmaLibrarian</span></a> <a href="https://tech.lgbt/tags/ByWaterSolutions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ByWaterSolutions</span></a> <a href="https://tech.lgbt/tags/Koha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Koha</span></a></p>
Neil Craig<p>Pretty much the only regions on the planet from which we *don't* see regular volumetric DDOS against www.bbc.co.uk &amp; www.bbc.com is central Africa &amp; the poles.</p><p>This is map shows the number of time each country was a DDOS traffic source in the last 30 days (larger circles == more DDOS attacks).</p><p>The botnets are really well globally distributed these days (and we typically see thousands or tens of thousands of source IPs per attack - mostly compromised servers).</p><p><a href="https://mastodon.social/tags/DDOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDOS</span></a> <a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://mastodon.social/tags/BotNet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BotNet</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@briankrebs" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>briankrebs</span></a></span> yeah, cuz every <a href="https://infosec.space/tags/SecOps" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecOps</span></a> of any <a href="https://infosec.space/tags/ISP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ISP</span></a> is gonna read that and look into the affected hosts if they were in their netwirk and obviously share the findings with investigators.</p><ul><li>And I don't blame them since <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> attacks espechally at that scale do create a lot if cost and anger at their end as well.</li></ul><p>So everyone but the malicious actor is gonna be mad...</p><ul><li>Which makes it <em>an even worse decision!</em></li></ul>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mstdn.social/@Npars01" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Npars01</span></a></span> and even then to me this looks more like a <em>"bad" <a href="https://infosec.space/tags/PR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PR</span></a> stunt</em> to me.</p><ul><li>An <a href="https://infosec.space/@kkarhan/114522070702829242" rel="nofollow noopener noreferrer" target="_blank">expensive one</a> for shure.</li></ul><p>It's the digital equivalent of kids shooting paintballs at a parked cop car in a monsoon rain and that got only noticed retroactively...</p><ul><li>I just think it's wasteful to <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a> <span class="h-card" translate="no"><a href="https://infosec.exchange/@briankrebs" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>briankrebs</span></a></span> 's website because it's only a <a href="https://infosec.space/tags/blog" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>blog</span></a>, he doesn't pay any <a href="https://infosec.space/tags/ransom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ransom</span></a>, is extremely well protected <em>and</em> outage of it doesn't generate the same public or financial pressure compared to businesses and governmental institutions.</li></ul><p>Like even <em>if</em> they had succeeded, what would've been the outcome? Maybe line that reads: <em>"Congrats Kiddo, you just wasted thousands if not millions of dollars worth in Monero just to create an outage of a tiny blog. Go give yourself a star in your exercise book!"</em>…</p><ul><li>Someone just had more money than sense I guess...</li></ul>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@briankrebs" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>briankrebs</span></a></span> TBH, I think <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a>'ing <em>your blog</em> is kinda wasteful beyond <em>"<a href="https://infosec.space/tags/BraggingRights" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BraggingRights</span></a>"</em> because it's not only <em>well protected</em> but the amount of damage / revenue by <a href="https://infosec.space/tags/blackmailing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>blackmailing</span></a> they could expect is just zero.</p><ul><li>I mean, it shure is a way to get <em>your attention</em> but that doesn't mean any <a href="https://infosec.space/tags/BlackHat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BlackHat</span></a> should <em>ask for that</em>!</li></ul><p>But there are thousands if not millions of weaker targets they could've attacked.</p><ul><li>Seems like the <a href="https://www.youtube.com/watch?v=qi0G0b1dNzE" rel="nofollow noopener noreferrer" target="_blank">muggers from Crocodile Dundee</a> <em>but dumber</em> cuz they try to puncture your tires but you're sitting in a tracked tank.</li></ul><p>Pretty shure had <a href="https://infosec.space/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> not told you or anyone else you would not have even noticed it.</p>
🆘Bill Cole 🇺🇦<p>Meanwhile at $DAYJOB we have routers being pounded into catatonia by VPN credstuffers on $US-HOSTER and $EU-HOSTER who seem to not have noticed that we want an all-important 2nd factor. (yeah, can't name them. they are who you'd expect) </p><p><a href="https://toad.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://toad.social/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a></p>
🆘Bill Cole 🇺🇦<p>Gee, I hope no legitimate <a href="https://toad.social/tags/SpamAssassin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SpamAssassin</span></a> users are trying to get to RuleQA from these places... </p><p>Prefix: 94.74.80.0/20<br>Prefix: 101.44.176.0/20<br>Prefix: 111.119.192.0/20 <br>Prefix: 159.138.96.0/20<br>Prefix: 166.108.192.0/20<br>Prefix: 188.239.32.0/20</p><p><a href="https://toad.social/tags/Huawei" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Huawei</span></a> <a href="https://toad.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://toad.social/tags/DDoS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDoS</span></a></p>