Topic-icon Possible DDoS Attack

3 months 4 weeks ago #3575 by KudoShinichi

FYI. Sharing content from FSISAC



* Title of threatening mails
Ransom request: DDoS Attack

* Body of threatening mails
We are Armada Collective.

In past, we launched one of the largest attacks in Switzerland's history. Use Google.

All network of ****** will be DDoS-ed starting June 26th. if you don't pay 11 Bitcoins @ 14E5FmyrYKDTSBLfP9XKak9HEmLznVwPJk

When we say all, we mean all - users will not be able to use any of your services.

Right now we will start 15 minutes attack on one of your IPs (XX.XXX.XX.XX). It will not be hard, we will not crash it at the moment to try to minimize eventual damage, which we want to avoid at this moment. It's just to prove that this is not a hoax. Check your logs!

If you don't pay by June 26th, attack will start, price to stop will increase to 25 BTC and will go up 10 BTC for every day of attack.

If you report this to media and try to get some free publicity by using our name, instead of paying, attack will start permanently and will last for a long time.

This is not a joke.

Our attacks are extremely powerful - our Mirai botnet can reach over 1 Tbps per second. So, no protection will help.

Prevent it all with just 11 BTC @ 14E5FmyrYKDTSBLfP9XKak9HEmLznVwPJk

Do not reply, we will probably not read. Pay and we will know its you.
AND YOU WILL NEVER AGAIN HEAR FROM US!

Bitcoin is anonymous, nobody will ever know you cooperated.

Please Log in or Create an account to join the conversation.

3 months 4 weeks ago #3579 by moomoo77

Oh no, is this happening in Singapore now??

Please Log in or Create an account to join the conversation.

3 months 4 weeks ago #3580 by KudoShinichi

Don't think so. But it is happening in other countries.

I did encounter the following DD4BC group targeted attack at my previous company in 2015. Our Hong Kong office received similar emails.
www.tripwire.com/state-of-security/secur...driven-ddos-attacks/

Please Log in or Create an account to join the conversation.

3 months 3 weeks ago #3587 by quinton7

KudoShinichi wrote:

Don't think so. But it is happening in other countries.

I did encounter the following DD4BC group targeted attack at my previous company in 2015. Our Hong Kong office received similar emails.
www.tripwire.com/state-of-security/secur...driven-ddos-attacks/

Better check your systems and do some cleaning up, just in case the ransomware is already inside.

Please Log in or Create an account to join the conversation.

3 months 1 week ago #3628 by chettukindadayyamnakembhayyam

This is copycat of the actual threat actors

Please Log in or Create an account to join the conversation.