viralamo

Menu
  • Technology
  • Science
  • Money
  • Culturs
  • Trending
  • Video

Subscribe To Our Website To Receive The Last Stories

Join Us Now For Free
Home
Technology
One of the most powerful DDoSes ever targets cryptocurrency platform
Technology

One of the most powerful DDoSes ever targets cryptocurrency platform

28/04/2022

One of the most powerful DDoSes ever targets cryptocurrency platform

A cryptocurrency platform was recently on the receiving end of one of the biggest distributed denial-of-service attacks ever after threat actors bombarded it with 15.3 million requests, content delivery network Cloudflare said.

DDoS attacks can be measured in several ways, including by the volume of data, the number of packets, or the number of requests sent each second. The current records are 3.4 terabits per second for volumetric DDoSes—which attempt to consume all bandwidth available to the target—and 809 million packets per second, and 17.2 million requests per second. The latter two records measure the power of application-layer attacks, which attempt to exhaust the computing resources of a target’s infrastructure.

Cloudflare’s recent DDoS mitigation peaked at 15.3 million requests per second. While still smaller than the record, its power was more considerable because the attack was delivered through HTTPS requests rather than HTTP requests used in the record. Because HTTPS requests are much more compute-intensive than HTTP requests, the latest attack had the potential to put much more strain on the target.

Cloudflare

The resources required to deliver the HTTPS request flood were also greater, indicating that DDoSers are growing increasingly powerful. Cloudflare said that the botnet responsible, comprising about 6,000 bots, has delivered payloads as high as 10 million requests per second. The attack originated from 112 countries, with about 15 percent of the firepower from Indonesia, followed by Russia, Brazil, India, Colombia, and the United States.

Advertisement

“Within those countries, the attack originated from over 1,300 different networks,” Cloudflare researchers Omer Yoachimik and Julien Desgats wrote. They said that the flood of traffic mainly came from data centers, as DDoSes move away from residential network ISPs to cloud computing ISPs. Top data center networks included the German provider Hetzner Online GmbH (Autonomous System Number 24940), Azteca Comunicaciones Colombia (ASN 262186), and OVH in France (ASN 16276). Other sources included home and small office routers.

“In this case, the attacker was using compromised servers on cloud hosting providers, some of which appear to be running Java-based applications. This is notable because of the recent discovery of a vulnerability (CVE-2022-21449) that can be used for authentication bypass in a wide range of Java-based applications,” Patrick Donahue, Cloudflare VP of Product, wrote in an email. “We also saw a significant number of MikroTik routers used in the attack, likely exploiting the same vulnerability that the Meris botnet did.”

Cloudflare

The attack lasted about 15 seconds. Cloudflare mitigated it using systems in its network of data centers that automatically detect traffic spikes and quickly filter out the sources. Cloudflare didn’t identify the target except that it operated a crypto launchpad, a platform used to help fund decentralized finance projects.

The numbers underscore the arms race between attackers and defenders as each attempts to outdo the other. It won’t be surprising if a new record is set in the coming months.

Source link

Share
Tweet
Pinterest
Linkedin
Stumble
Google+
Email
Prev Article
Next Article

Related Articles

AI Weekly: Restricting surveillance technologies is a strong first step, but it’s not enough
In a letter to U.S. House leaders on Wednesday, over …

AI Weekly: Restricting surveillance technologies is a strong first step, but it’s not enough

E3 canceled as game industry capitulates to coronavirus
The Entertainment Software Association announced it is canceling the Electronic …

E3 canceled as game industry capitulates to coronavirus

Leave a Reply Cancel reply

Find us on Facebook

Related Posts

  • Fast & Furious: Crossroads lives video games a quarter-mile at a time
    Tesla sues Alameda County to force California …
    09/05/2020
  • 2020 will be a big year for online childcare — here are 7 startups to watch
    Developer platform Glitch debuts $10/mo tier for …
    15/04/2020
  • Apple forgot to sanitize the Phone Number field for lost AirTags
    Apple forgot to sanitize the Phone Number …
    30/09/2021
  • Oculus friends lists now has text chat … if you link account to Facebook
    Oculus friends lists now has text chat …
    15/12/2019
  • Sony’s 5G Xperia 1 II is more a showcase than a contender
    Sony’s 5G Xperia 1 II is more …
    24/02/2020

Popular Posts

  • Ten Things That Made the 1990s – …
    25/05/2022 0
  • 10 Autobiographical Songs That Really Tell a …
    27/04/2022 0
  • 10 Times Going to the Toilet Went …
    27/04/2022 0
  • Microsoft accounts can go passwordless, making “password123” a thing of the past
    Businesses are adopting Windows 11 more quickly …
    27/04/2022 0
  • Russia wages “relentless and destructive” cyberattacks to bolster Ukraine invasion
    Russia wages “relentless and destructive” cyberattacks to …
    27/04/2022 0

viralamo

Pages

  • Contact Us
  • Privacy Policy
Copyright © 2022 viralamo
Theme by MyThemeShop.com

Ad Blocker Detected

Our website is made possible by displaying online advertisements to our visitors. Please consider supporting us by disabling your ad blocker.

Refresh