This is the most powerful botnet ever seen

DDoS Attack
(Image credit: Shutterstock) (Image credit: Shutterstock)

Web security experts Cloudflare have recently spotted a new botnet which it claims is probably the most powerful ever seen. 

Dubbed Mantis, the firm is claiming it evolved from a previously-known botnet - Meris. There are a few things that make Mantis exceptional, according to the researchers. First - it has fewer bots in its network, compared to its counterparts - around 5,000, but it is capable of launching excruciatingly powerful attacks. 

The biggest Distributed Denial of Service (DDoS) attack on record is 26 million generated requests per second (rps), which Cloudflare says it successfully mitigated. To make things even more impressive - the requests were not done via HTTP, but rather HTTPS - a more expensive type of attacks, given that this type of attack needs extra computing power to establish a secure TLS connection. 

Hijacking servers and VMs

"That's an average of 5,200 HTTPS rps per bot," explained Cloudflare product manager Omer Yoachimik. "Generating 26 million HTTP requests is hard enough to do without the extra overhead of establishing a secure connection, but Mantis did it over HTTPS." 

Mantis is able to do this as it doesn’t hijack low-power devices, such as DVRs, or cameras, but rather powerful endpoints - servers, or virtual machines. 

The botnet is also capable of attacking at scale - in the first month of Cloudflare keeping an eye on Mantis, it managed to launch more than 3,000 HTTP DDoS attacks against its customers.

Most of the time, the operators go for internet and telecommunications companies (36%), media and publishing firms (15%), and gaming and finance organizations (12%). The victims are usually located in the United States (20%), although Russian-based firms are also a major target (15%), followed by those in Turkey, France, Poland, Ukraine, the UK, Canada, and China.

Distributed Denial of Service attacks are often used as a distraction, while threat actors conduct more devastating attacks, such as ransomware, or data exfiltration.

Via: The Register

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
DDoS Attack
World's largest DDoS attack blocked, Cloudflare claims
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Another huge new botnet is infecting thousands of webcams and video recorders for DDoS attacks
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Dangerous new botnet targets webcams, routers across the world
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Industrial routers are being hit by zero-days from new Mirai botnets
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Cisco, ASUS, QNAP, and Synology devices hijacked to major botnet
An image of network security icons for a network encircling a digital blue earth.
Standing strong against hyper-volumetric DDoS attacks
Latest in Security
Image depicting hands typing on a keyboard, with phishing hooks holding files, passwords and credit cards.
Microsoft warns about a new phishing campaign impersonating Booking.com
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Meta warns of worrying security flaw hitting open source type software
Hand holding smartphone and scan fingerprint biometric identity for unlock her mobile phone
Biometrics add another layer of security to passwordless authentication
Data leak
Hacked Tata Technologies data leaked by ransomware gang
A close-up photo of an iPhone, with the App Store icon prominent in the center of the image.
Thousands of iOS apps found to expose user data and leak Stripe keys
China
Chinese hackers targeting Juniper Networks routers, so patch now
Latest in News
A graphic of the PC Gaming Show
Get ready for a bounty of PC games on June 8, as the PC Gaming show is back
NordicTrack Ultra 1
The new NordicTrack Ultra 1 treadmill looks like it was designed by an architect and costs $15,000
An Nvidia GeForce RTX 5070
Nvidia RTX 5080 stock is so barren that retailers are holding competitions where you can "win" the right to buy one for MSRP
Assassin's Creed Shadows
Ubisoft shareholder accuses publisher of 'misleading investors', plans protest outside Paris HQ
Google Gemini AI logo on a smartphone with Google background
I made an AI version of Bilbo Baggins using Goggle Gemini for free, and shared a pipe with him outside Bag End – here’s what you can now do with Gems
Nicole Kidman wears a blue blouse with her arms crossed.
Netflix might be renewing The Perfect Couple and Beauty in Black for season 2, but I don’t get why when it’s canceled shows with poorer ratings