Wednesday , August 19 2026
15

Azure hit by Record 15 Tbps DDoS attack using 500,000+ IP addresses

On October 24, 2025, Azure DDoS Protection detected and mitigated the largest cloud DDoS attack at 15.72 Tbps with nearly 3.64 billion packets per second, aimed at one endpoint in Australia.

Azure’s global DDoS Protection system quickly identified and mitigated threats, filtering out harmful traffic and ensuring continuous service for customer workloads.

Critical WordPress Plugin Flaw Exposes 600,000 Sites to Attacks

A big security flaw in the Forminator Forms WordPress plugin might let unapproved users upload harmful PHP files. This could...
Read More
Critical WordPress Plugin Flaw Exposes 600,000 Sites to Attacks

Apple Patches 28 Security Flaws in macOS, iOS, and iPadOS

Apple has put out security updates for macOS, iOS, and iPadOS. These updates fix 28 problems that could let users...
Read More
Apple Patches 28 Security Flaws in macOS, iOS, and iPadOS

DoNot (APT-C-35) Targeting Bangladesh Military Personnel

Bangladesh's military and defense system is actively under targeted attack linked to DoNot Team, or APT-C-35, as stated in a...
Read More
DoNot (APT-C-35) Targeting Bangladesh Military Personnel

McDonald’s, Vodafone Affected by Azure Theft Campaign Exposing Millions of Records

A large Azure data theft campaign is surfacing on the dark web. A hacker is offering employee lists taken from...
Read More
McDonald’s, Vodafone Affected by Azure Theft Campaign Exposing Millions of Records

NIST to Modernize NVD in the Age of Artificial Intelligence

National Institute of Standards and Technology (NIST) demands feedback from industry and the government on how to update the National...
Read More
NIST to Modernize NVD in the Age of Artificial Intelligence

ALERT
Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

TP-Link has revealed several serious security flaws in Aginet networking products managed by ISPs. This includes mesh systems, routers, PON...
Read More
ALERT  Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

LiteLLM supply chain attack reveals 153GB of stolen credentials online

153GB record surface online stolen during the LiteLLM supply chain attack linked to thousands of corporate domains, including AWS, Samsung,...
Read More
LiteLLM supply chain attack reveals 153GB of stolen credentials online

PATCHCORD Backdoor Targets Telecom and CII In South Asia

A previously undocumented backdoor called PATCHCORD actively target telecom and critical information infrastructure (CII) in South Asia. According to Acronis...
Read More
PATCHCORD Backdoor Targets Telecom and CII In South Asia

Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

Fortinet has released fixes for a set of authentication flaws in its FortiWeb, FortiManager, and FortiClient products. It warns admins...
Read More
Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

“City-Forum” Campaign
“City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

A data theft plan is stealing information from anonymous users on Salesforce Experience Cloud and ServiceNow customer portals using special...
Read More
“City-Forum” Campaign  “City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

The attack originated from Aisuru botnet. Aisuru is a Turbo Mirai-class IoT botnet that frequently causes record-breaking DDoS attacks by exploiting compromised home routers and cameras, mainly in residential ISPs in the United States and other countries.

The attack featured high-rate UDP floods aimed at a specific public IP, originating from over 500,000 unique IPs. These sudden UDP bursts had little source spoofing and random ports, making traceback easier and allowing for provider enforcement.

An Azure attack surpasses recent records, indicating a worrying trend. Last month, on September 15, 2025, Cloudflare disclosed that it stopped a 22.5 Tbps attack, driven by a Mirai variant infecting smart devices.

In March 2025, Google Cloud fended off a 10.2 Tbps attack from Asia-Pacific botnets that used SYN floods and DNS amplification.

In 2024, AWS reported an 8.9 Tbps attack on a U.S. e-commerce site, linked to hacked routers in Eastern Europe.

Cloudflare’s 2025 Q1 DDoS Report from April showed a record number of DDoS attacks mitigated last year, marking a 198% increase from the previous quarter and a 358% rise compared to the previous year.

It blocked 21.3 million DDoS attacks against its customers in 2024, plus 6.6 million attacks on its infrastructure during an 18-day multi-vector campaign.

DDoS Scandals Hit Bangladesh ISP Sector: BTRC Prepares Crackdown

Check Also

npm

Around 800 Malicious npm Packages Distribute Cross-Platform RAT and Infostealer

A group of almost 800 harmful packages was added to the npm registry in a …