The largest distributed denial-of-service (DDoS) attack to date peaked at 5.6 terabits per second and came from a Mirai-based botnet with 13,000 compromised devices. The UDP-based attack occurred last year on October 29 and targeted an internet service provider (ISP) in Eastern Asia in an attempt to bring its services offline. Security and connectivity services provider Cloudflare says that the assault lasted 80 seconds but had no impact on the target and generated no alerts because its detection and mitigation was completely autonomous. An earlier DDoS attack that Cloudflare reported in early October 2024 peaked at 3.8 Tbps, lasted for 65 seconds, and held the record for the largest volumetric assault. Hyper volumetric DDoS attacks have started to become more frequent, a trend that became noticeable in the third quarter of 2024, according to Cloudflare. In the fourth quarter of the year attacks started to exceed 1Tbps, with a quarter-over-quarter growth of 1,885%. Attacks that exceeded 100 million packets per second (pps) also increased by 175%, with a notable 16% of them also going over 1 billion pps. Hyper-volumetric HTTP DDoS attacks only accounted for 3% of the total recorded, with 63% of the remaining being small attacks that did not exceed 50,000 requests per second (rps). The stats are similar for network layer (Layer 3/Layer 4) DDoS attacks, where 93% did not go beyond 500 Mbps, and 87% were limited to numbers below 50,000 pps. Cloudflare warns that DDoS attacks ar...
Cloudflare mitigated a record-breaking 5.6 Tbps DDoS attack
BleepingComputer
·Bill Toulas
·Published Jan 21, 2025
·Updated
Affected Software
3 affected components
D-Link Routers
Session Smart routers
Mikrotik routers
Frequently Asked Questions
1
What is the main topic of this article?
The article discusses Cloudflare's successful mitigation of a record-breaking 5.6 Tbps DDoS attack.
2
What security implications are discussed in the article?
The article highlights the risks posed by large-scale DDoS attacks and the vulnerabilities of IoT devices used in botnets.
3
What type of attack was mitigated by Cloudflare?
The attack was a UDP-based distributed denial-of-service (DDoS) attack.
4
What devices were involved in the botnet behind the attack?
The botnet consisted of 13,000 compromised devices, primarily using Mirai malware.
5
Which brands of routers are mentioned as being affected?
The affected routers include D-Link, Session Smart, and MikroTik routers.