Security News

Crime agency turns to Google ads to deter teen DDoS hackers
2020-06-02 13:01

Britain's National Crime Agency has hit on what looks like a simple way to stop impressionable teens from being sucked into cybercrime - advertise the terrible legal consequences using Google Ads. It sounds too good to be true - can a simple ad deter teen would-be hackers that easily? In fact, the evidence of similar campaigns run by the NCA in the past is that it has some effect.

New DNS Vulnerability Lets Attackers Launch Large-Scale DDoS Attacks
2020-05-20 04:16

Israeli cybersecurity researchers have disclosed details about a new flaw impacting DNS protocol that can be exploited to launch amplified, large-scale distributed denial-of-service attacks to takedown targeted websites. Called NXNSAttack, the flaw hinges on the DNS delegation mechanism to force DNS resolvers to generate more DNS queries to authoritative servers of attacker's choice, potentially causing a botnet-scale disruption to online services.

New DNS Vulnerability Lets Attackers Launch Large-Scale DDoS Attacks
2020-05-20 04:16

Israeli cybersecurity researchers have disclosed details about a new flaw impacting DNS protocol that can be exploited to launch amplified, large-scale distributed denial-of-service attacks to takedown targeted websites. Called NXNSAttack, the flaw hinges on the DNS delegation mechanism to force DNS resolvers to generate more DNS queries to authoritative servers of attacker's choice, potentially causing a botnet-scale disruption to online services.

NXNSAttack: New DNS Vulnerability Allows Big DDoS Attacks
2020-05-19 16:39

Several major providers of DNS services and software have been working to address a serious DNS vulnerability that could allow malicious actors to launch significant distributed denial-of-service attacks. The flaw exists in the DNS protocol and it affects all recursive DNS resolvers.

Hoaxcalls Botnet Expands Targets List, DDoS Capabilities
2020-04-24 08:53

The Hoaxcalls Internet of Things botnet has expanded the list of targeted devices and has added new distributed denial of service capabilities to its arsenal, DDoS protection services provider Radware reports. The botnet was designed to launch DDoS attacks using UDP, DNS and HEX floods, based on commands received from its command and control server.

Fast-Moving DDoS Botnet Exploits Unpatched ZyXel RCE Bug
2020-04-22 21:39

That's according to researchers at Radware, who also said that it's notable how quickly Hoaxcalls operators have moved to weaponize the ZyXel bug, which as of this time of writing, has still not been addressed in a ZyXel advisory. According to the Palo Alto Unit 42 researchers who found it, the original sample featured three DDoS attack vectors: UDP, DNS and HEX floods; and, it was seen infecting devices through two vulnerabilities: A DrayTek Vigor2960 remote code-execution vulnerability and a GrandStream Unified Communications remote SQL injection bug.

Average bandwidth of DDoS attacks increasing, APIs and applications under attack
2020-04-20 04:00

There has been an increasing number of high-volume attacks in Q1 2020, with 51 attacks over 50 Gbps. The average bandwidth of attacks also rose, reaching 5,0 Gbps versus 4,3 Gbps in the same quarter in 2019. Key findings Maximum bandwidth nearly doubles: In Q1 2020, the maximum bandwidth nearly doubled in comparison to the previous year; the biggest attack stopped was 406 Gbps. In Q1 2019 the maximum bandwidth peaked at 224 Gbps. Complex multi-vector attacks rising: The share of multi-vector attacks rose to 64% in Q1 2020 up from 47% in Q1 2019.

Report: US facing four times as many DDoS attacks as China
2020-04-16 18:09

New research from Atlas VPN has shown that the United States experienced more than 175,000 DDoS attacks in the month of March, more than double the number faced by the next highest country and four times as many as China. According to data gathered and analyzed by Atlas VPN researchers, South Korea and Brazil both suffered from more than 50,000 DDoS attacks while China came in just ahead of the United Kingdom with about 45,000 attacks.

Dutch Police Arrest Man Over DDoS Attack on Government Website
2020-04-13 11:29

Dutch police on Friday arrested a 19-year-old man from Breda suspected of launching a distributed denial of service attack on a government website. Given the current coronavirus crisis, when emergency ordinances and regulations are made accessible through this site, the Dutch police notes, keeping it accessible is vital.

Across-the-board increase in DDoS attacks of all sizes
2020-03-27 06:00

There has been a 168% increase in DDoS attacks in Q4 2019, compared with Q4 2018, and a 180% increase overall in 2019 vs. 2018, according to Neustar. The company saw DDoS attacks across all size categories increase in 2019, with attacks sized 5 Gbps and below seeing the largest growth.