We analyzed 400 DDoS-Stresstests from 2022 and gathered very interesting insights into the current state of protection/mitigation-solutions, what works (well), what doesnt, and especially: WHY.
https://t.co/gHQo5WcNZr
#ddos#dfir#cybervandals
For 19 years, GPS satellites have secretly broadcast a “numbers station” in their public signals. We decoded 12M messages: a 2011 flash where 31 of 32 satellites flipped in hours, “ghost” substrings repeating years apart, and a “TEXT” prefix spreading now. https://t.co/xz3svmqiDa
Introducing HTTP/2 Bomb: a remote DoS in nginx, Apache httpd, Microsoft IIS, Envoy, and Cloudflare Pingora. A single client pins 32GB of server memory in 10s. Found by Codex.
Blog post: https://t.co/WO9MeExoun
PoCs: https://t.co/NpVgEHBHPl
As promised, here is paper part 2 of 2 attacking Azure Front Door issues for various bugs.
Smuggling Through the Front Door... Achieving 0-Click XSS with Cache Poisoning
https://t.co/INtcplLVQx
The OG of cyber investigations, @briankrebs, just published a follow-up to our investigation into the Stark Industries hosting network. His piece adds new detail, including MIRhosting’s first official response.
In his May 2024 deep-dive, Krebs first put Stark Industries on the map. We built on his work, and two years later, with last week’s arrests by Dutch authorities, the Stark saga is moving into new territory: what happens to the many companies across Europe that hosted the thinly disguised, rebranded Stark?
Our original investigation (in English):
https://t.co/Xtf2innE5i
Brian’s piece:
https://t.co/lwoMixc2sY
Dutch authorities have arrested two men and seized over 800 servers in a major crackdown on infrastructure used to support Russian-linked cyberattacks, influence operations, and disinformation in Europe. The operation targeted the persons behind MIRhosting and WorkTitans BV / the[.]hosting, who took over hosting assets from the EU-sanctioned Stark Industries Solutions network after earlier sanctions on its previous operators (PQHosting / Neculiti brothers). Read the full story behind the takedown in this article by @moltke :
How a consultant and a concert pianist from the Netherlands aided pro-Russian hackers"
https://t.co/CW3nGf6Zba
There is also a Story about it by @briankrebs Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks
https://t.co/CURkf5x7av
https://t.co/CW3nGf6Zba
#ddos #takedown #noname057
In our "A Silent Shift: The Return of Server-Based Botnets" - report we examine the resurgence of server-based attacker botnets, explain what they are, and discuss why they can pose a threat to established defense mechanisms.
https://t.co/Ly1PrUqUEM
More new TLD insights on Radar!
New TLD nameserver performance widgets on TLD detail pages - aggregate p25/p50/p75 latency and per-nameserver median latency from Cloudflare servers over time. Example: https://t.co/TnClgUVrDd
What Akamai says ��️
The current SOTI-Report with detailed insights on shifting battlegrounds and new attack vectors (APIs & AI), but also useful mitigations/architecture advices
https://t.co/KZF2KfR75k
Building for the future means preparing for the quantum era today. Our security teams have just introduced our 2029 timeline for PQC migration, warning that quantum computers could break standard encryption much sooner than many previously expected. Learn more in @ArsTechnica.