Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet
好的,我现在需要帮用户总结一篇文章的内容,控制在100个字以内,并且不需要特定的开头。首先,我得仔细阅读文章内容,找出关键信息。 文章主要讲Cloudflare阻止了一次创纪录的29.7 Tbps DDoS攻击,由AISURU僵尸网络发起。攻击持续了69秒,但目标未公开。此外,文章提到攻击频率增加,尤其是针对AI公司的攻击激增,以及僵尸网络出租的情况。 接下来,我需要将这些信息浓缩成一句话。要包含Cloudflare、29.7 Tbps、AISURU僵尸网络、创纪录攻击、攻击频率上升、AI公司受冲击以及僵尸网络出租服务等内容。 可能的结构是:Cloudflare阻止了AISURU僵尸网络发起的29.7 Tbps DDoS攻击,创历史新高;同时指出攻击频率上升,尤其是针对AI公司,并提到僵尸网络出租服务的情况。 现在检查字数是否在100字以内,并确保信息准确无误。 </think> Cloudflare成功抵御了由AISURU僵尸网络发起的29.7 Tbps DDoS攻击,创下历史新高。该攻击持续69秒,尽管目标未披露。报告指出DDoS攻击频率激增,尤其是针对AI公司的攻击增加了347%,同时部分AISURU僵尸网络被出租用于发动大规模破坏性攻击。 2025-12-4 09:11:43 Author: securityaffairs.com(查看原文) 阅读量:4 收藏

Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet

Pierluigi Paganini December 04, 2025

Cloudflare blocked a record 29.7 Tbps DDoS attack from the AISURU botnet. The 69-second attack set a new high, though the target remains undisclosed.

Cloudflare stopped a record 29.7 Tbps DDoS attack from the AISURU botnet, a 69-second barrage that set a new volume record. The cybersecurity firm did not disclose the name of the targeted organization.

Cloudflare’s Q3 2025 DDoS Threat Report highlights the unprecedented impact of the Aisuru botnet, a 1–4 million-device network launching hyper-volumetric attacks regularly above 1 Tbps and 1 Bpps. These attacks rose 54% quarter-over-quarter (QoQ), averaging 14 per day, with peaks of 29.7 Tbps and 14.1 Bpps. Cloudflare also saw DDoS traffic spike 347% MoM against AI firms, and increases targeting Mining/Metals and Automotive sectors amid EU-China trade tensions. Overall, the company blocked 8.3M attacks, up 15% QoQ and 40% YoY.

Aisuru has hit telecom, gaming, hosting, and financial firms, even causing collateral U.S. Internet disruption due to its massive traffic volumes. Parts of the botnet are sold as-for-hire services, enabling anyone to launch powerful DDoS attacks for only a few hundred to a few thousand dollars.

““Chunks” of Aisuru are offered by distributors as botnets-for-hire, so anyone can potentially inflict chaos on entire nations by crippling backbone networks and saturating Internet links, disrupting millions of users and impairing access to essential services — all at a cost of a few hundred to a few thousand U.S. dollars.” reads the report published by Cloudflare. “Since the start of 2025, Cloudflare has already mitigated 2,867 Aisuru attacks.”

Cloudflare has mitigated 2,867 Aisuru attacks in 2025, including 1,304 hyper-volumetric attacks in Q3 such as the record 29.7 Tbps and 14.1 Bpps floods, all blocked autonomously.

DDoS attack severity jumped sharply in Q3: attacks over 100 Mpps rose 189% QoQ, and those exceeding 1 Tbps surged 227%. On the HTTP side, 4% of attacks surpassed 1M requests per second. Most incidents are extremely short, 71% of HTTP and 89% of network-layer attacks end within 10 minutes, yet still cause major outages, with recovery taking far longer due to complex system checks and restoration. Short-burst attacks can have lasting operational impact. Indonesia remains the top global DDoS source, leading for a full year, with HTTP attack traffic from the country surging 31,900% since 2021.

DDoS Aisuru botnet

DDoS attacks spiked across several sectors in Q3 2025. Mining, Minerals & Metals saw a sharp rise amid EU–China tensions over EV tariffs and rare-earth exports, jumping 24 spots to become the 49th most targeted industry. The Automotive sector experienced the biggest surge, climbing 62 places to rank sixth, while cybersecurity firms rose 17 spots to 13th.
AI companies were hit especially hard: in September 2025, HTTP DDoS traffic against generative-AI services surged up to 347% amid growing public concern and regulatory scrutiny in the UK.
Overall, the most attacked industries were Information Technology & Services, Telecommunications, and Gambling & Casinos, with notable increases across Automotive, Media, Financial Services, Retail, and Consumer Electronics.

“We’ve entered an era where DDoS attacks have rapidly grown in sophistication and size — beyond anything we could’ve imagined a few years ago. Many organizations have faced challenges in keeping pace with this evolving threat landscape.” concludes the report. “Organizations relying on on-premise mitigation appliances or on-demand scrubbing center solutions may benefit from reviewing their defense strategy given the current threat landscape.”

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)




文章来源: https://securityaffairs.com/185299/security/cloudflare-mitigates-record-29-7-tbps-ddos-attack-by-the-aisuru-botnet.html
如有侵权请联系:admin#unsafe.sh