home.social

#denialofservice — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #denialofservice, aggregated by home.social.

fetched live
  1. Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption

    A misconfigured open directory on IP address 86.53.111[.]212:8080 exposed critical details of an active cybercrime operation, including Moobot botnet source code, denial of service tools with attack records, and a fraudulent Chinese identity verification service. The exposed directory also contained StresD Pro+, a multi-user DDoS panel with 16 registered accounts and 32 recorded attacks on the collection date. The recovered Moobot source code revealed a previously unknown dormant download-and-execute functionality that represents the most plausible mechanism behind APT28's repurposing of Moobot for deploying malware to compromised devices. Despite a 2024 court-authorized disruption by the U.S. Department of Justice, Moobot remains active as of August 2026, with one active C2 server observed conducting over 500 short-duration attacks throughout the month, consistent with DDoS-as-a-service operations.

    Pulse ID: 6a90f19bbcdbb55af3412789
    Pulse Link: otx.alienvault.com/pulse/6a90f
    Pulse Author: AlienVault
    Created: 2026-08-28 02:25:31

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT28 #Chinese #CyberCrime #CyberSecurity #DDoS #DenialofService #DoS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #botnet #AlienVault

  2. Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption

    A misconfigured open directory on IP address 86.53.111[.]212:8080 exposed critical details of an active cybercrime operation, including Moobot botnet source code, denial of service tools with attack records, and a fraudulent Chinese identity verification service. The exposed directory also contained StresD Pro+, a multi-user DDoS panel with 16 registered accounts and 32 recorded attacks on the collection date. The recovered Moobot source code revealed a previously unknown dormant download-and-execute functionality that represents the most plausible mechanism behind APT28's repurposing of Moobot for deploying malware to compromised devices. Despite a 2024 court-authorized disruption by the U.S. Department of Justice, Moobot remains active as of August 2026, with one active C2 server observed conducting over 500 short-duration attacks throughout the month, consistent with DDoS-as-a-service operations.

    Pulse ID: 6a90f19bbcdbb55af3412789
    Pulse Link: otx.alienvault.com/pulse/6a90f
    Pulse Author: AlienVault
    Created: 2026-08-28 02:25:31

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT28 #Chinese #CyberCrime #CyberSecurity #DDoS #DenialofService #DoS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #botnet #AlienVault

  3. Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption

    A misconfigured open directory on IP address 86.53.111[.]212:8080 exposed critical details of an active cybercrime operation, including Moobot botnet source code, denial of service tools with attack records, and a fraudulent Chinese identity verification service. The exposed directory also contained StresD Pro+, a multi-user DDoS panel with 16 registered accounts and 32 recorded attacks on the collection date. The recovered Moobot source code revealed a previously unknown dormant download-and-execute functionality that represents the most plausible mechanism behind APT28's repurposing of Moobot for deploying malware to compromised devices. Despite a 2024 court-authorized disruption by the U.S. Department of Justice, Moobot remains active as of August 2026, with one active C2 server observed conducting over 500 short-duration attacks throughout the month, consistent with DDoS-as-a-service operations.

    Pulse ID: 6a90f19bbcdbb55af3412789
    Pulse Link: otx.alienvault.com/pulse/6a90f
    Pulse Author: AlienVault
    Created: 2026-08-28 02:25:31

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT28 #Chinese #CyberCrime #CyberSecurity #DDoS #DenialofService #DoS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #botnet #AlienVault

  4. Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption

    A misconfigured open directory on IP address 86.53.111[.]212:8080 exposed critical details of an active cybercrime operation, including Moobot botnet source code, denial of service tools with attack records, and a fraudulent Chinese identity verification service. The exposed directory also contained StresD Pro+, a multi-user DDoS panel with 16 registered accounts and 32 recorded attacks on the collection date. The recovered Moobot source code revealed a previously unknown dormant download-and-execute functionality that represents the most plausible mechanism behind APT28's repurposing of Moobot for deploying malware to compromised devices. Despite a 2024 court-authorized disruption by the U.S. Department of Justice, Moobot remains active as of August 2026, with one active C2 server observed conducting over 500 short-duration attacks throughout the month, consistent with DDoS-as-a-service operations.

    Pulse ID: 6a90f19bbcdbb55af3412789
    Pulse Link: otx.alienvault.com/pulse/6a90f
    Pulse Author: AlienVault
    Created: 2026-08-28 02:25:31

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT28 #Chinese #CyberCrime #CyberSecurity #DDoS #DenialofService #DoS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #botnet #AlienVault

  5. Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption

    A misconfigured open directory on IP address 86.53.111[.]212:8080 exposed critical details of an active cybercrime operation, including Moobot botnet source code, denial of service tools with attack records, and a fraudulent Chinese identity verification service. The exposed directory also contained StresD Pro+, a multi-user DDoS panel with 16 registered accounts and 32 recorded attacks on the collection date. The recovered Moobot source code revealed a previously unknown dormant download-and-execute functionality that represents the most plausible mechanism behind APT28's repurposing of Moobot for deploying malware to compromised devices. Despite a 2024 court-authorized disruption by the U.S. Department of Justice, Moobot remains active as of August 2026, with one active C2 server observed conducting over 500 short-duration attacks throughout the month, consistent with DDoS-as-a-service operations.

    Pulse ID: 6a90f19bbcdbb55af3412789
    Pulse Link: otx.alienvault.com/pulse/6a90f
    Pulse Author: AlienVault
    Created: 2026-08-28 02:25:31

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT28 #Chinese #CyberCrime #CyberSecurity #DDoS #DenialofService #DoS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #botnet #AlienVault

  6. OpenSSL Updates Close Heap Corruption and Remote Crash Weaknesses

    OpenSSL has released patched builds for a broad set of vulnerabilities affecting CMS, CMP, DTLS, QUIC and cryptographic operations. Several weaknesses are remotely triggerable, making dependency discovery and timely upgrades important for exposed services and embedded applications.

    securebulletin.com/openssl-upd

  7. Cisco confirmed active exploitation of CVE-2026-20349, a high-severity flaw (CVSS 8.6) in ASA and FTD firewalls. Insufficient error handling in HTTP processing allows an unauthenticated remote attacker to trigger a device reboot via the Remote Access SSL VPN service, resulting in denial of service.

    #CVE202620349 #CiscoASA #FirewallSecurity #DenialOfService

    cyberworldops.eu/en/cisco-asa-

  8. Cisco confirmed active exploitation of CVE-2026-20349, a high-severity flaw (CVSS 8.6) in ASA and FTD firewalls. Insufficient error handling in HTTP processing allows an unauthenticated remote attacker to trigger a device reboot via the Remote Access SSL VPN service, resulting in denial of service.

    #CVE202620349 #CiscoASA #FirewallSecurity #DenialOfService

    cyberworldops.eu/en/cisco-asa-

  9. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  10. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  11. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  12. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  13. [ Blog ] VMware #vCenter vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX #CVE #denialofservice #securityadvisory

  14. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  15. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  16. DOS by CloudFlare

    People pay for this. I find it an odd choice of disposing of money, but good for them.

    #DenialofService

  17. DOS by CloudFlare

    People pay for this. I find it an odd choice of disposing of money, but good for them.

    #DenialofService

  18. DOS by CloudFlare

    People pay for this. I find it an odd choice of disposing of money, but good for them.

    #DenialofService

  19. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  20. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  21. Am I a target?

    I keep getting traffic from the same server. It's a Hetzner Online server (supposedly) which has geodata linking it to the UAE. I've blocked the traffic, but I'm getting hella suspicious. Anyway I've been live monitoring all my traffic and I'm blocking anything that I think is even the tiniest bit sus.I'm not really thrilled to be blocking a hetzner IP, since there's so many mastodon servers hosted on hetzner IPs, but like if y'all can't fucking behave you're not welcome at the party. Love […]

    snowebell.cc/am-i-a-target/

  22. Am I a target?

    I keep getting traffic from the same server. It's a Hetzner Online server (supposedly) which has geodata linking it to the UAE. I've blocked the traffic, but I'm getting hella suspicious. Anyway I've been live monitoring all my traffic and I'm blocking anything that I think is even the tiniest bit sus.I'm not really thrilled to be blocking a hetzner IP, since there's so many mastodon servers hosted on hetzner IPs, but like if y'all can't fucking behave you're not welcome at the party. Love […]

    snowebell.cc/am-i-a-target/

  23. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  24. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  25. [ Blog ] VMware #vCenter vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p #CVE #denialofservice #securityadvisory

  26. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  27. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  28. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  29. [ Blog ] VMware #vCenter vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p #CVE #denialofservice #securityadvisory

  30. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  31. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  32. CISA Flags SolarWinds Serv-U Flaw as Actively Exploited

    A critical flaw in SolarWinds Serv-U is being actively exploited, allowing attackers to crash the service with a specially crafted POST request - no authentication required. This denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered by a simple HTTP POST request with a malicious Content-Encoding header.

    osintsights.com/cisa-flags-sol

    #Solarwinds #Servu #Cve202628318 #DenialOfService #Contentencoding

  33. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  34. Hackers Actively Exploit SolarWinds Serv-U Flaw to Crash Servers

    SolarWinds has issued an emergency hotfix to address a critical flaw in its Serv-U file transfer product, which hackers are actively exploiting to crash servers with specially crafted POST requests. A denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered without authentication, posing a significant threat to…

    osintsights.com/hackers-active

    #Cve202628318 #Solarwinds #Servu #DenialOfService #ManagedFileTransfer

  35. Codex Agent Uncovers Lethal HTTP/2 DoS Exploit

    A home computer on a typical 100Mbps connection can cripple a vulnerable server in mere seconds with the HTTP/2 Bomb, a potent DoS exploit that combines two decade-old attack techniques. This devastating attack exhausts server memory by sending tiny, compressed HTTP/2 header fragments and holding connections open, taking the service offline.

    osintsights.com/codex-agent-un

    #Http2DosExploit #DenialOfService #Hpack #Slowloris #Cve20166581

  36. Codex Agent Uncovers Lethal HTTP/2 DoS Exploit

    A home computer on a typical 100Mbps connection can cripple a vulnerable server in mere seconds with the HTTP/2 Bomb, a potent DoS exploit that combines two decade-old attack techniques. This devastating attack exhausts server memory by sending tiny, compressed HTTP/2 header fragments and holding connections open, taking the service offline.

    osintsights.com/codex-agent-un

    #Http2DosExploit #DenialOfService #Hpack #Slowloris #Cve20166581

  37. HTTP/2 Bomb Attack Disrupts Web Servers in Seconds

    A home computer on a typical 100Mbps connection can cripple a vulnerable server in mere seconds using a new technique called the HTTP/2 Bomb, which cleverly combines two known weaknesses in HTTP/2 server configurations. This potent attack can be unleashed quickly, leaving servers inaccessible.

    osintsights.com/http2-bomb-att

    #Http2Bomb #DenialOfService #Hpack #Slowloris #WebServers

  38. HTTP/2 Bomb Vulnerability Targets Major Web Servers with Remote DoS Exploit

    A newly discovered HTTP/2 Bomb vulnerability can be exploited to launch a remote Denial of Service (DoS) attack on major web servers, taking advantage of a weakness in the default HTTP/2 configuration. This flaw cleverly combines a compression bomb and a Slowloris-style hold to target HPACK, HTTP/2's header-compression…

    osintsights.com/http2-bomb-vul

    #Http2Bomb #DenialOfService #RemoteExploit #Vulnerability #WebServers

  39. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  40. GNU SASL <2.2.3 is vulnerable (CVE-2026-48829): HIGH severity NULL pointer dereference in DIGEST-MD5 can crash clients/servers (DoS risk). No patch yet — consider disabling DIGEST-MD5 for now. radar.offseq.com/threat/cve-20 #OffSeq #GNU #Vuln #DenialOfService

  41. GNU SASL <2.2.3 is vulnerable (CVE-2026-48829): HIGH severity NULL pointer dereference in DIGEST-MD5 can crash clients/servers (DoS risk). No patch yet — consider disabling DIGEST-MD5 for now. radar.offseq.com/threat/cve-20 #OffSeq #GNU #Vuln #DenialOfService