#DDoS
18 stories taggedDDoS.

Zombie Cards, Cut Cables, and a Botnet: The Week's Cybercrime Stories You May Have Missed
A DDoS attack on encrypted messaging app Threema, a new Linux botnet called Evooo1Bot, and T-Mobile physically severing a cable to stop an intrusion all made news this week. Here is what happened.

The 'CDN Tsunami' Attack Turns a Trickle of Traffic Into a Flood at the Origin
Researchers show how the way big content delivery networks translate modern HTTP/3 requests into older HTTP/1.1 can multiply a small attack stream by up to 350 times against the website behind them.

Threema knocked offline by shifting DDoS attacks, Swiss messenger says
The encrypted messaging service and its Swiss hosting partner Nine faced sustained flood attacks that changed tactics to slip past defences.

New Evooo1Bot malware is quietly turning home routers into criminal traffic relays
Researchers say the Mirai-based botnet has been hijacking gateway devices since July to sell as proxies, steal credentials, and launch attacks.

New Kimwolf v7 Botnet Disguises DDoS Attacks as Normal Web Traffic
Palo Alto Networks says the upgraded Android and smart-device botnet hides its floods inside HTTP/2 sessions that look like ordinary browsing.

Cloudflare Says Terabit-Scale DDoS Attacks Jumped Fivefold This Spring
The web-infrastructure giant mitigated more than 800 network attacks above 1 Tbps in the second quarter, up from 130 the quarter before.

Tengu Botnet Turns Linux Devices Against Their Own Defenders
A new Mirai spin-off reboots infected machines when responders try to shut it down, giving its persistence tricks another shot at survival.

Europe's Cyber Threat Picture Looks Nothing Like America's. The Numbers Prove It.
Business email scams hit 81% of reported incidents in Germany and the Benelux region. Europe absorbs nearly half of all global denial-of-service attacks. A new wave of ransomware gangs is arriving. The regulatory rulebook is entirely different, too.

US Charges Three Russians for Running 'Bulletproof' Hosting That Powered Ransomware and Phishing Attacks on 42 American Organisations
A grand jury indictment unsealed this week names Aleksandr Volosovik, Kirill Zatolokin, and Yulia Pankova as the operators behind two companies that rented out hidden, hard-to-shut-down internet infrastructure to criminals worldwide.

Fake Student Proxies on npm Turned Browsers Into a DDoS Weapon
Researchers at JFrog say 148 malicious packages used the npm registry as free hosting for a booby-trapped proxy site, quietly enlisting students' browsers into a two-week attack campaign in May.

RustDuck: A Rust-Based DDoS Botnet Quietly Building Out Since February
XLab researchers say the two-stage loader is iterating faster than its install base is growing — and that's the interesting part.

DDoS-as-a-Service Grows Up: Tiered Pricing, Reseller Programs, Real Support Tickets
The booter market has shed its script-kiddie aesthetic. Today's stresser panels look like SaaS — because operationally, they are.

The Bot That Learned to Lie: Inside the New Generation of AI-Driven DDoS
Defenders describe attack waves that pause, study traffic patterns, and resume from fresh infrastructure — behavior that looks less like a script and more like a sparring partner.

Operators Warn AI-Generated Traffic Is Outpacing Static DDoS Defences as Regulators Eye Disclosure Rules
Machine-learning-driven flood attacks are reshaping volumetric thresholds faster than current incident-reporting frameworks anticipated.

A Three-Year-Old Chromium Bug Can Turn Your Browser Into a Bot — And It's Still Not Fixed
An unpatched flaw in Chromium's Background Fetch API lets malicious websites keep service workers alive indefinitely, enabling crypto mining, DDoS participation, and persistent tracking across browser restarts.