Record-Scale DDoS Attack Detected by FastNetMon
FastNetMon, a leading solution for network security, has detected a record-scale distributed denial-of-service (DDoS) attack targeting the website of a major DDoS scrubbing vendor in Western Europe. The attack reached a staggering 1.5 billion packets per second (1.5 Gbps), making it one of the largest packet-rate floods publicly disclosed. The malicious traffic was primarily a UDP flood launched from compromised customer-premises equipment (CPE), including IoT devices and routers, across more than 11,000 unique networks worldwide.
This massive attack highlights the growing risks for network operators as tens of thousands of CPE devices can be hijacked and used in coordinated packet floods. The industry must act to implement detection logic at the ISP level to stop outgoing attacks before they scale. FastNetMon's Advanced platform, designed to handle attacks of this size, enabled its customer to automatically detect the flood within seconds, preventing disruption to the target service.
Key Takeaways:
- The attack reached 1.5 billion packets per second (1.5 Gbps), one of the largest packet-rate floods publicly disclosed.
- The malicious traffic was primarily a UDP flood launched from compromised CPE, including IoT devices and routers, across more than 11,000 unique networks worldwide.
- The attack highlights the growing risks for network operators as tens of thousands of CPE devices can be hijacked and used in coordinated packet floods.
- The industry must act to implement detection logic at the ISP level to stop outgoing attacks before they scale.
- FastNetMon's Advanced platform enabled its customer to automatically detect the flood within seconds, preventing disruption to the target service.
- The attack shows how attackers are pushing both packet and bandwidth volumes to unprecedented levels, as seen in Cloudflare's recent report mitigating an 11.5 Tbps DDoS attack.
- The risks presented by compromised CPE devices, including IoT devices and routers, must be addressed to prevent similar attacks.
- FastNetMon is a leading solution for network security, offering advanced DDoS detection and mitigation capabilities.
- The company's real-time analytics and rapid response capabilities help organisations protect their infrastructure from evolving cyber threats.
Statistics:
- 1.5 billion packets per second (1.5 Gbps): the packet-rate flood achieved by the attack.
- 11,000: the number of unique networks affected by the malicious traffic.
- Tens of thousands: the number of CPE devices that can be hijacked and used in coordinated packet floods.
- 1.5 Gbps: the peak rate of the packet flood detected by FastNetMon.
- 11.5 Tbps: the size of the DDoS attack mitigated by Cloudflare, highlighting the growing bandwidth and packet volumes used by attackers.
Sources:
- FastNetMon press release, dated September 11, 2025
- GlobeNewswire, "FastNetMon Detects Record-Scale DDoS Attack"
- Cloudflare, "Cloudflare Mitigates 11.5 Tbps DDoS Attack"