LameDuck’s Skynet Botnet Launched 35,000+ DDoS Attacks
ID: 79d76a2c-11ca-5569-a896-3f75c0e6ea03
STIX ID: report--79d76a2c-11ca-5569-a896-3f75c0e6ea03
Feed Name: cybersecurityNews.com
**Executive summary:** LameDuck (aka Anonymous Sudan) is a DDoS-focused threat actor that leveraged a multi-tier botnet (branded Skynet/Godzilla/InfraShutdown) to conduct over 35,000 DDoS attacks against critical infrastructure worldwide, operated DDoS-for-hire and ransom services demanding Bitcoin, used mixed vectors (Layer 7 HTTP floods, TCP direct-path, UDP reflection), and coordinated with other hacktivist groups; the report also provides mitigation recommendations such as always-on DDoS protection, WAFs, rate limiting, and CDN caching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
