Imperva mitigate 25.3 billion request DDoS attack on customer

Share post:

Imperva broke a new record when the company’s mitigation solution was able to defend one of its customers against a single attack that sent more than 25.3 billion requests.

While attacks with peaks of more than one million requests per second (RPS) last between several seconds and a few minutes, the Imperva mitigated attack lasted over four hours. The DDoS attack developed on June 27, 2022, peaking at 3.9 million requests per second (RPS) and averaging 1.8 million RPS.

Imperva’s mitigated DDoS attack was launched from a massive botnet spanning 180 countries, with most IP addresses located in the U.S., Brazil, and Indonesia. The botnet used 170,000 hijacked devices, including modem routers, smart surveillance cameras, vulnerable servers, and poorly protected IoTs.

According to Imperva, some of the servers from which the malicious traffic originated are hosted on public clouds and cloud security providers, indicating widespread abuse.

Research shows that the yet to be identified botnet is not a “Mantis,” the botnet behind Cloudflare’s DDoS mitigation record in the summer.

Since Mantis relies on a smaller number of devices, the number of devices used against Imperva’s client is closer to the MÄ“ris estimates. MÄ“ris is responsible for the previous DDoS record of 21.8 million RPS, and researchers estimate that the MÄ“ris swarm includes between 30,000 and 250,000 devices.

The sources for this piece include an article in BleepingComputer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways