Starting 2026-08-23 at 16:04 UTC, a series of DDoS attacks have been sent at our server.
So far there have been 24 waves of these attacks, each approximately 4-5 minutes in duration. The time between attacks varies from 6-57 minutes.
The most dense IP block hitting us during this DDoS is 27.125.240.0/20, but the attackers are well distributed. 24% of the malicious connection attempts are coming from Indonesian IP blocks. All signals point to this being a botnet attack using real IPs making it difficult to mitigate through regular means.
We are in contact with our service provider and an anti DDoS tunnel is beings stood up. Another post will be made when this is complete.
A list of each attack window can be found below.
16:04-16:07
16:11-16:14
16:23-16:26
16:44-16:47
17:26-17:29
17:34-17:37
17:51-17:54
18:13-18:16
18:24-18:27
18:48-18:51
19:29-19:32
20:25-20:28
20:38-20:42
21:03-21:06
21:14-21:17
21:22-21:25
21:33-21:36
21:47-21:50
22:01-22:04
22:12-22:15
22:29-22:32
22:43-22:46
22:58-23:01
23:22-23:26