Skip to main content

Cloudflare is fighting off a DDoS attack that started the day before Thanksgiving

locky ransomware self downloading image files hacker  hacking symbol
www.elbpresse.de
Cloudflare is a leading provider of web hosting, DNS, and content delivery network (CDN) services. The company manages 101 data centers around the globe and manages 1Tbps of data capacity. It’s no doubt, then, that Cloudflare tends to see problems on the internet as quickly as anyone.

CloudFlare has recently been noticing an increase in distributed denial of service (DDoS) traffic that began on November 23, the day before the U.S. Thanksgiving Day holiday weekend kicked off. According to the Cloudflare blog, the company detected and then defeated the first in a series of attacks. It started at 10:30 a.m. PT and achieved 400Gbps in traffic before it shut down at 7 p.m. PT.

The attacker continued this pattern for the next few days, starting at around the same time, and quitting for the day at around the same time in the early evening. As Cloudflare puts it, it’s as if the attacker is unwilling to work overtime.

cloudflare-initial-attack-november-23
CloudFlare
Cloudflare

The attacks have all peaked at around the same 400Gbps or so in traffic. Cloudflare notes that they do not appear to be using the Mirai botnet that was involved in the massive internet outage that struck on October 21. Cloudflare doesn’t indicate who is responsible for the ongoing DDoS attacks on its infrastructure, or what tools they’re using. It does, however, isolate the attacks as being concentrated on the U.S. West Coast.

So far, the attacks haven’t affected Cloudflare’s customers. More recently, the attacker appears to have moved on from a regular workday schedule to an around-the-clock schedule. One can only hope that this isn’t the precursor to a more devastating attack that might actually impact paying customers.

Editors' Recommendations

Mark Coppock
Mark has been a geek since MS-DOS gave way to Windows and the PalmPilot was a thing. He’s translated his love for…
Cloudflare just stopped one of the largest DDoS attacks ever
Hands on a laptop.

Cloudflare, a company that specializes in web security and distributed denial of service (DDoS) attack mitigation, just reported that it managed to stop an attack of an unprecedented scale.

The HTTPS DDoS attack was one of the largest such attacks ever recorded, and it came from unusual sources -- data centers.

Read more
Microsoft stopped the largest DDoS attack ever reported
Nvidia T4 Enterprise Server Wall

Distributed Denial-of-Service (DDoS) attacks have become more common, and Microsoft recently published a blog post looking into the trends for such attacks on its own servers. In that post, the company says that, at one point, it stopped one of the largest-ever-recorded DDoS attacks on a Microsoft Azure server in Asia.

According to Microsoft's data, in November, an unnamed Azure customer in Asia was targeted with a DDoS attack with a throughput of 3.47 Tbps and a packet rate of 340 million packets per second (pps.) The attack came from 10,000 sources from multiple countries across the globe, including China, South Korea, Russia, Iran, and Taiwan. The attack itself lasted 15 minutes. Yet it is not the first one of such scale, as there were two additional attacks, one of 3.25 Tbps and another of 2.55 Tbps in December in Asia.

Read more
Cloudflare reports a massive 175% increase in DDoS attacks
Person using laptop with security graphics in front.

Cloudflare, a web infrastructure and security company, has just released a report titled "DDoS Attack Trends for Q4 2021." According to Cloudflare, 2021 has been a particularly bad year in terms of DDoS attacks.

Ransom distributed denial of service (DDoS) attacks increased by over 175 percent quarter over quarter, highlighting the large scale of the problem described by Cloudflare.

Read more