ZeroHour

Search: “Advanced Search”

3 stories in the last 30d

U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacksnew

The U.S. DoJ seized NightmareStresser DDoS-for-hire domains, disrupting a booter service linked to hundreds of thousands of attacks since 2022.

The U.S. Department of Justice announced a court-authorized seizure of nightmare-stresser[.]com and nightmarestresser[.]org, conducted with the FBI Anchorage Field Office and the Royal Canadian Mounted Police as part of Operation PowerOFF. Searchlight Cyber reported in 2023 that NightmareStresser had over 566,000 registered users and 52 servers, offering Layer 4 amplification and Layer 7 floods against education, government, and gaming victims. The seizure follows earlier actions, including 48 domains seized in December 2022 and 53 domains plus four arrests this April, bringing totals to twelve charged defendants and more than 100 seized domains.

The Hacker Newsupdated · 16m agofirst · 8h agoPolicy & legal 5 sources

Risky Bulletin: Russia tells data centers to deploy drone defenses

Russia ordered data center operators to deploy drone strike defenses under a Putin decree allowing temporary state takeover of unprotected critical infrastructure.

The Russian government instructed data center operators to deploy protections against drone strikes under a presidential decree signed by Putin that allows temporary state administration of critical infrastructure operators failing to defend against Ukrainian hacks and drone strikes. Although data centers are not formally critical infrastructure in Russia, the decree applies to them because other sectors depend heavily on cloud services; Russia has more than 180 data centers, over 80% in the European region within range of Ukrainian strikes. The digest also reports a Dropbox breach affecting nearly 5,000 accounts via the Lenovo ID integration, spyware attacks on at least 14 Serbians using NoviSpy or Pegasus, and a password recovery attack targeting hundreds of thousands of X accounts tied to the new X Money service. Other items include a 14-hour compromise of Coder's Cloudflare infrastructure delivering malicious Terraform modules, donor data breaches at Davayte and You Are Not Alone via the Stripe/WooCommerce integration, a $2.5M Aquifer crypto heist, and a TVING breach exposing data of almost 40 million accounts.

Risky Business News · 13d agoPolicy & legal

Risky Bulletin: Russia starts blocking DoH and DoT

Russian users report blocks on DoH and DoT servers, including Cloudflare 1.1.1.1 and Google 8.8.8.8, in an apparent censorship crackdown.

Russian internet users began reporting failures connecting to DNS-over-HTTPS and DNS-over-TLS servers, suggesting a government crackdown on the two privacy protocols. The blocks reportedly cover Cloudflare's 1.1.1.1 and Google's 8.8.8.8 resolvers; Roskomnadzor has not officially confirmed the action. The agency tested a similar block in March on Beeline's network and had named DoH for blocking as early as 2021. The bulletin also briefly notes state-sponsored phishing of EU officials, a DDoS against Norway's Digdir, the ReliaQuest/ShinyHunters dispute, and older ransomware and breach disclosures.

Risky Business News · 22d agoPolicy & legal1