ZeroHour
BleepingComputerpublished ()ingested Sergiu Gatlan
Part of a story covered by 5 sources: “U.S. Seizes NightmareStresser DDoS-for-Hire Domains in Operation PowerOFF” — merged summary and timeline →

US takes down NightmareStresser DDoS-for-hire platform

mediumPolicy & legalimportance 60
AI summary · glm-5.3-flash

FBI seized NightmareStresser, a DDoS-for-hire platform with 566,000 users and servers capable of 200 Gbps attacks, under Operation PowerOFF.

US law enforcement seized the nightmare-stresser[.]com and nightmarestresser[.]org domains used by the DDoS-for-hire service. Searchlight Cyber reported in 2023 that NightmareStresser had over 566,000 registered users and 52 dedicated servers launching attacks of up to 200 Gbps against Layer 4 and Layer 7 targets. The FBI said the service was used for hundreds of thousands of actual or attempted DDoS attacks since 2022. The action continues Operation PowerOFF, which began in December 2018 and previously took down DigitalStress, Dstat.cc and dozens of booter domains.

  • Service rented botnets of compromised routers and IoT devices
  • December 2022 DOJ takedown seized the .com domain and arrested six suspects
  • Operation PowerOFF waves previously seized 60+ booter domains
  • Attacks hit schools, government services, businesses and gaming platforms

Indicators of compromiseAll →

TypeIndicatorContext
domainnightmare-stresser.comattacks targeting online platforms and services. Before the nightmare-stresser[.]com and nightmarestresser[.]org were taken down , the stresse
domainnightmarestresser.com22, the U.S. Department of Justice (DOJ) also took down the nightmarestresser[.]com domain and arrested six suspects who allegedly owned mult
domainnightmarestresser.orgforms and services. Before the nightmare-stresser[.]com and nightmarestresser[.]org were taken down , the stresser service described itself a
Full article397 words · extracted from bleepingcomputer.com · click to collapse

DDoS

On Tuesday, the U.S. Federal Bureau of Investigation (FBI) seized the domains used by NightmareStresser, one of the world's longest-running distributed denial-of-service (DDoS) platforms.

"Booter services" like NightmareStresser are DDoS-for-hire services that let anyone rent large botnets of compromised routers and a wide range of IoT devices to launch massive DDoS attacks targeting online platforms and services.

Before the nightmare-stresser[.]com and nightmarestresser[.]org were taken down, the stresser service described itself as the "#1 online IP booter" and "the only DDoS tool available 24/7."

As cybersecurity firm Searchlight Cyber reported in 2023, NightmareStresser had over 566,000 registered users and 52 dedicated servers that could launch DDoS attacks of up to 200 Gbps targeting multiple layers of a network (including Layer 7 application protocols and Layer 4 TCP/UDP protocols).

"Since 2022, the NightmareStresser Booter service was used to launch hundreds of thousands of actual or attempted DDoS attacks targeting victims worldwide," the FBI Cyber Division said on Wednesday.

"This enforcement action was supported by Operation PowerOFF, a coordinated effort among international law enforcement agencies aimed at dismantling criminal D DoS-for-hire infrastructures worldwide," a seizure banner now displayed on the seized domains reads.

NightmareStresser seizure banner
NightmareStresser seizure banner (BleepingComputer)

In December 2022, the U.S. Department of Justice (DOJ) also took down the nightmarestresser[.]com domain and arrested six suspects who allegedly owned multiple DDoS-for-hire services.

Operation ​PowerOFF is an ongoing, long-running joint law enforcement action that began in December 2018 with the seizure of 15 websites linked to DDoS-as-a-service platforms.

Previously, this operation has led to the takedown of the DigitalStress DDoS-for-hire service in the United Kingdom, the seizure of the Dstat.cc DDoS review platform, and the arrest of two stresser service operators in Poland.

In other joint actions under Operation PowerOFF, law enforcement seized 13 domains and 48 more domains hosting booter platforms in two separate enforcement waves.

Last year, Polish authorities also detained four suspects linked to six DDoS-for-hire platforms behind thousands of attacks targeting schools, government services, businesses, and gaming platforms worldwide since 2022, while the U.S. seized nine domains in the same coordinated crackdown on DDoS services.

Build your security blueprint for AI-powered attacks

Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.

Save your seat

Text extracted automatically; images, tables and formatting may be missing. Original: https://www.bleepingcomputer.com/news/security/fbi-seizes-nightmarestresser-service-linked-to-thousands-of-ddos-attacks/