Live data from Hacker News

Azure hit by 15 Tbps DDoS attack using 500k IP addresses

bleepingcomputer.com

291–300 of 318 posts

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#291
post #221
post #173

Earlier quoted context omitted.

>There is a lot of money to be made from paid cosmetics, ranks, moderator (demi-tyrant) status, etc on custom servers. Anyone have any idea how much a 15 Tbps DDoS attack would cost? Thousands of dollars? Tens of thousands?

back in '98 i got a 100mb per download limit for $100 on my cable connection. i recall getting DoS'd by someone cause i was a lpb barstard in quake tf. They were kind though, only DoS'd me 90mb as a warning.... Years later, TF2 is getting DoS'd into oblivion, an extorhted by DDoS for hire. Some things change, some things stay the same.

I'm old enough to remember this site called kuro5hin, and how it folded a bit after it got DoS'd to death around 2000

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#292
post #98

This is what I don't get >The Aisuru DDoS botnet operates as a DDoS-for-hire service with restricted clientele; operators have reportedly implemented preventive measures to avoid attacking governmental, law enforcement, military, and other national security properties. Most observed Aisuru attacks to date appear to be related to online gaming. https://www.netscout.com/blog/asert/asert-threat-summary-ais... So why? Li…

Mad salt. Imagine a fully grown man having a toddler tantrum. "If I can't play/win/get my way, nobody can" type mentality. It's also a method of coercion. Give me mod status or I'll DDOS your server and destroy your community. The other half comes from sever operators ddosing their competition. There is a lot of money to be made from paid cosmetics, ranks, moderator (demi-tyrant) status, etc on custom servers.

Also just peacocking, being that skid on the forums that took down PlayStation on Christmas will get you cred.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#293

Earlier quoted context omitted.

I will say most of the time the ISPs themselves provide the routers at residential homes

Sure, but if they now go out and say do this and that to secure them a big portion of the users will have support issues. They don't understand the instruction, the pressed the wrong button, they entered the wrong value, all sorts of things could go wrong and the ISP has to dedicate resources in fixing it while they don't gain anything in return.

Most routers shipped by ISPs have remote management enabled, they can be reconfigured by the ISP themselves without having to involve the end user in the process.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#295

Earlier quoted context omitted.

> It's not possible to extort anything from Microsoft lul wut? https://www.businessinsider.com/trump-white-house-ballroom-d... https://www.cnbc.com/2025/01/09/microsoft-contributes-1-mill...

It's the exact opposite of extortion. They're thrilled to spend money to buy political favor whenever possible. It's not even a drop in the bucket. "Boeing, Microsoft and Amazon among big donors to Biden’s inauguration" https://www.seattletimes.com/seattle-news/politics/boeing-mi...

> They're thrilled to spend money to buy political favor whenever possible.

"Pay up or you'll have problems with the FCC/DOJ/etc."

Not saying its unique to this admin

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#296
post #213

IoT is just wave after wave of unsecure devices. There's gotta be a better way.

I suppose ISPs could be more restrictive about which routers they allow their customers to use, but I'm not sure I'm a fan of further lockdown in that department.

I doubt that would do much, most people don't even know they can use a non ISP provided router

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#297

Earlier quoted context omitted.

Yep, Minecraft servers get DDoSed so often that Cloudflare actually offers turnkey protection for them specifically. https://www.cloudflare.com/en-gb/application-services/produc...

$1 per gig overage? I'd be using someone else's credit card for that...

during release one of the servers peaked at around 8gbps which is around 1000MiB/s which is $1/s which comes out to a - spits out coffee - 2.6million a month, seems perfectly reasonable?

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#298
post #148

> Aisuru is a Turbo Mirai-class IoT botnet IoT botnet. Just read that again, we're literally inventing problems where none needs to exist. IoT adds basically null or negative value, except to nerds who like to think they're smarter than other people by consuming the latest e-slop. Its all so tiresome.

Most "IoT botnet" devices are Wi-Fi routers and IP cameras. Which are the two classes of IoT devices that provide undisputed value. Maybe, just maybe, people aren't as stupid as you think they are?

Routers are generally not considered IoT devices. So your second sentence is kind of ironic.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#299

> by exploiting compromised home routers and cameras, mainly in residential ISPs in the United States and other countries, Presumably it’s possible to log the residential IP of the source of these packets. Why isn’t there any industry group pushing for the ISPs to a) send the owners an email telling them or b) blocking off all traffic for a period to get them to do something - or is the economic cost higher than caus…

This already happens in the Netherlands, your router will be put in quarantine mode and you have to prove that the "virus" is gone This happened to me, at the time I thought it was strange but seeing this event happen it makes a lot more sense now

was router not provided by your own isp?

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#300

> by exploiting compromised home routers and cameras, mainly in residential ISPs in the United States and other countries, Presumably it’s possible to log the residential IP of the source of these packets. Why isn’t there any industry group pushing for the ISPs to a) send the owners an email telling them or b) blocking off all traffic for a period to get them to do something - or is the economic cost higher than caus…

This has always been the elephant in the room. imho, US intelligence don't want this so congress won't do it. Intelligence controls or buys these botnets when they need them, so regulation here is always impossible to push, but in other countries is more common.
Post reply on HN