this post was submitted on 21 Jun 2025
146 points (97.4% liked)
Technology
71708 readers
3706 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
What site was attacked? I don't think the article mentions it.
Found stuff "Telefonica Brazil (AS27699) accounted for the largest portion of the DDoS attack traffic, responsible for 10.5% of the total. Viettel Group (AS7552) follows closely with 9.8%, while China Unicom (AS4837) and Chunghwa Telecom (AS3462) contributed 3.9% and 2.9% respectively. China Telecom (AS4134) accounted for 2.8% of the traffic."
The disclosure comes as the QiAnXin XLab team said the DDoS botnet tracked as RapperBot was behind an attack aimed at artificial intelligence (AI) company DeepSeek in February 2025, and that the latest samples of the malware attempt to extort victims, demanding they pay "protection fees" to avoid being targeted by DDoS attacks in the future.
China, the United States, Israel, Mexico, the United Kingdom, Greece, Iran, Australia, Malaysia, and Thailand are the primary countries where devices infected by RapperBot are located. The botnet is known to be active since 2022.
https://thehackernews.com/2025/06/massive-73-tbps-ddos-attack-delivers.html?m=1
It seems Deepseek has been a target for a while. Possibly to eliminate competition and national security since there is a govt AI push.
Cloudflare presumably don't want to give away the identity of their customer.
Thank you for saving me a click
It was TotallyRealSiteWeAreALegitimateCompanyPleaseKeepPayingUs.com