• Services
    • Assess
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Transform
      • SOC Consultancy
      •     SOC Maturity Assessment
      •     SOC Model Evaluation
      •     SOC Gap Analysis
      •     SIEM Gap Analysis
      •     SIEM Optimization
      •     SOC Content Pack
    • Train
      • Security Awareness and Training
      • Tabletop Exercise
      • Simulated Cyber Attack Exercises
    • Respond
      • Incident Response
      • Incident Analysis
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Press Release
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
Rewterz Threat Alert – Remcos RAT – Active IOCs
July 15, 2022
Rewterz Threat Advisory –Multiple IBM Security Verify Identity Manager Vulnerabilities
July 15, 2022

Rewterz Threat Update – Mantis Botnet Powered The Largest DDoS Attack In June

July 15, 2022

Severity

High

Analysis Summary

A DDoS mitigation provider announced it has mitigated the greatest HTTPS DDoS attack launched by a botnet known as Mantis in June 2022. Approximately, 5000 hijacked virtual machines and potent servers were used by the Mantis botnet to produce 26 million requests per second.

The Mantis botnet used only 5,000 bots to launch the 26M HTTPS requests per second attack, an average of 5,200 HTTPS rps per bot. It’s difficult enough to generate 26M HTTP requests, but Mantis accomplished it via HTTPS. This demonstrates this botnet’s distinct strength.

Mantis-botnet.png?ssl=1
  • Image source:

Mantis includes a variety of VM platforms and enables operating a variety of HTTP proxies to carry out the attacks. Servers and virtual machines, which have substantially greater resources, are the main focus of Mantis targets. Most Mantis attacks (36%) targeted businesses in the IT and telecommunications sector, followed by the news, media, and publishing (15%), gaming (12%), and finance sectors (10%).

Mantis will probably be involved in several additional attacks over the upcoming months since researchers believe it to be the most potent botnet to date.

Impact

  • Massive HTTP DDoS Flood
  • Website Downtime

Remediation

  • Customize your HTTP DDoS protection settings
  • Review the guidelines for DDoS preventive measures here.
  • Upgrade your operating system.
  • Don’t open files and links from unknown sources.
  • Install and run anti-virus scans.
  • Services
    • Assess
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Respond
      • Incident Response
      • Incident Analysis
  • Transform
    • SOC Consultancy
    •     SOC Maturity Assessment
    •     SOC Model Evaluation
    •     SOC Gap Analysis
    •     SIEM Gap Analysis
    •     SIEM Optimization
    •     SOC Content Pack
  • Train
    • Security Awareness and Training
    • Tabletop Exercise
    • Simulated Cyber Attack Exercises
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
COPYRIGHT © REWTERZ. ALL RIGHTS RESERVED.