Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
The Internet Security

KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS (krebsonsecurity.com) 16

KrebsOnSecurity was hit with a near-record 6.3 Tbps DDoS attack, believed to be a test of the powerful new Aisuru IoT botnet. The attack, lasting under a minute, was the largest Google has ever mitigated and is linked to a DDoS-for-hire operation run by a 21-year-old Brazilian known as "Forky." Brian Krebs writes: [Google Security Engineer Damian Menscher] said the attack on KrebsOnSecurity lasted less than a minute, hurling large UDP data packets at random ports at a rate of approximately 585 million data packets per second. "It was the type of attack normally designed to overwhelm network links," Menscher said, referring to the throughput connections between and among various Internet service providers (ISPs). "For most companies, this size of attack would kill them." [...]

The 6.3 Tbps attack last week caused no visible disruption to this site, in part because it was so brief -- lasting approximately 45 seconds. DDoS attacks of such magnitude and brevity typically are produced when botnet operators wish to test or demonstrate their firepower for the benefit of potential buyers. Indeed, Google's Menscher said it is likely that both the May 12 attack and the slightly larger 6.5 Tbps attack against Cloudflare last month were simply tests of the same botnet's capabilities. In many ways, the threat posed by the Aisuru/Airashi botnet is reminiscent of Mirai, an innovative IoT malware strain that emerged in the summer of 2016 and successfully out-competed virtually all other IoT malware strains in existence at the time.

This discussion has been archived. No new comments can be posted.

KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS

Comments Filter:
-->
  • by gweihir ( 88907 ) on Tuesday May 20, 2025 @08:29PM (#65391949)

    And invest appropriate effort into finding these cretins ...

    • they know who it is, read the summary.
  • Great test (Score:4, Informative)

    by viperidaenz ( 2515578 ) on Tuesday May 20, 2025 @11:15PM (#65392159)

    They showed the world that their botnet is not capable of hurting any site with Google or Cloudflare ddos protection. That the target doesn't even notice something happened until they hear about it in the news.

  • The article says this is likely them showing off for potential buyers. If that's the case, seems silly to publicize it. Should just ignore it so the buyer sees it wasn't even noteworthy. Instead, they build it up even more and make it more appealing than ever for the buyer.

  • How do you take a criminal seriously if their name comes from one of the later cash-grab Toy Story movies?

-->

The study of non-linear physics is like the study of non-elephant biology.

bizx.cmp.ifConsent({purposes: 'all', vendors: '6sense'}, async() => { (function(){ var s = document.getElementsByTagName("script")[0]; var b = document.createElement("script"); b.type = "text/javascript"; b.async = true;b.defer=true;b.id='6senseWebTag'; b.src = "https://j.6sc.co/j/58729049-be80-466a-9abf-b3911430bbd8.js"; s.parentNode.insertBefore(b, s); })(); }) -->
Working...
!function(e,i){if(!e.pixie){var n=e.pixie=function(e,i,a){n.actionQueue.push({action:e,actionValue:i,params:a})};n.actionQueue=[];var a=i.createElement("script");a.async=!0,a.src="//acdn.adnxs.com/dmp/up/pixie.js";var t=i.getElementsByTagName("head")[0];t.insertBefore(a,t.firstChild)}}(window,document); pixie('init', '44bba44a-d920-4ad6-ad5c-6142072898f3' ); pixie('event', 'PageView'); }) function updateVid(data){ var args = { method: 'PUT', headers: { 'Accept': 'application/json', 'Content-Type': 'application/json' }, }; if (Object.keys(data).length !== 0) { args.body = JSON.stringify(data); } fetch('/p/sfapi/update_vid', args); } if(typeof __cmp !== 'undefined') { // record visitor consent opt-out __cmp('addEventListener', ["consentrejected", function () { try { var ids = window.pbjs.getUserIds(); if (Object.keys(ids).length !== 0) { var regulation = bizx.cmp.getRegulation(); var data = {id5id: ids.id5id.uid, jurisdiction: regulation}; updateVid(data); }else{ updateVid({}); } } catch (e) { updateVid({}); } }, false], null); } -->
OSZAR »