Live data from Hacker News

Azure hit by 15 Tbps DDoS attack using 500k IP addresses

bleepingcomputer.com

31–40 of 318 posts

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#32
post #17

Earlier quoted context omitted.

We really shouldn’t - this seems like perhaps one of the worst ideas one could propose in an era of rising authoritarian rule. Seems like a bad time to be putting silly restrictions on how folks route their traffic.

Tinfoil hat says it’s the gov’t doing it for those reasons /s

I will disregard your cowardly "/s" and say: no, I bet it isn't.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#33

I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.

The international organisation for stopping wars, human trafficking, money laundering, drug distribution etc. however capable they might be, haven't managed to stamp out any of those things.

I'd say a putative UN NetWatch would suffer from the same issues of funding and corruption and politics, but still we might have something better than this wild west lawlessness.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#34
post #30

I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.

Because it's not technicaly possible, I mean we're on HN, we all know how internet works.

You should talk to a network engineer before making claims like this. There are mechanisms to curtail DDOS attacks at origin.

For a few reasons (political, economical) there’s little will to enact them, these attacks are so few and far between and you can pay your way out of them in most cases, so the incentives aren’t there for ISPs (whom are a commodity judged primarily on price and bandwidth)

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#35

I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.

Since this is a distributed attack, I'm not really sure how that enforcement would look like? Am I missing something, are all these bots/zombies easily selectable and blockable?

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#36

> it suddenly ballooned in size in April 2025 after its operators breached a TotoLink router firmware update server and infected approximately 100,000 devices This is scary. Everyone lauds open source projects like OpenWRT but... who is watching their servers? I imagine you can't run an army of security people on donations and a shoestring budget. Does OpenWRT use digital signing to mitigate this?

This is exactly why OpenWRT has no unattended updates by default )

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#37
Cui bono?

There is a big (opportunity) cost to this kind of thing, How is this worthwhile for anyone? I assume that its's not just a competitor. Is it really worth 's time to temporarily upset one of of three big cloud providers? Is there a ransom behind the scenes?

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#38

I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.

Perhaps because, in many cases, the very governments responsible for enforcing it include the bad actors themselves.

Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses

#40

> it suddenly ballooned in size in April 2025 after its operators breached a TotoLink router firmware update server and infected approximately 100,000 devices This is scary. Everyone lauds open source projects like OpenWRT but... who is watching their servers? I imagine you can't run an army of security people on donations and a shoestring budget. Does OpenWRT use digital signing to mitigate this?

As always, hundreds watch the open repositories, maybe one watches a company's build servers, if they're lucky. :-)
Post reply on HN