A nation state is learning how to take the internet offline
Bruce Schneier: DDoS attacks are targeting companies that host the web

A nation state is learning how to take down the internet, according to IT security expert Bruce Schneier.
Hackers are launching major DDoS attacks on some of the companies who host the web's infrastructure, Schneier warned.
But the length and sophistication of these DDoS attacks are such that it is clear the hackers behind them are trying to learn the limit of the companies' defences.
Schneier said in a blog post: "One week, the attack would start at a particular level of attack and slowly ramp up before stopping. The next week, it would start at that higher point and continue. And so on, along those lines, as if the attacker were looking for the exact point of failure."
The point is not to crash these companies' systems immediately, he added, but to launch attacks on a variety of vectors that require the targets to reveal their entire defence capabilities. The hackers also hit them with probing attacks that manipulate internet addresses, seeing how long it takes for their defences to kick in.
"Someone is extensively testing the core defensive capabilities of the companies that provide critical internet services," Schneier said.
While the hosting providers spoke with Schneier anonymously, he said their findings tally with network security firm Verisign's DDoS trends report, which found attacks became more frequent, persistent and sophisticated in the spring of this year.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Schneier ruled out hacktivists, researchers and cybercriminals, saying the size and scale of the attacks point to a nation state actor, most likely China.
"On the other hand, it's possible to disguise the country of origin for these sorts of attacks," he added.
-
RSAC Conference 2025: The front line of cyber innovation
ITPro Podcast Ransomware, quantum computing, and an unsurprising focus on AI were highlights of this year's event
-
Anthropic CEO Dario Amodei thinks we're burying our heads in the sand on AI job losses
News With AI set to hit entry-level jobs especially, some industry execs say clear warning signs are being ignored
-
UK crime fighters wrangle “several thousand” potential cyber criminals in DDoS-for-hire honeypot
News The sting follows a recent crackdown on DDoS-for-hire services globally
-
US begins seizure of 48 DDoS-for-hire services following global investigation
News Six people have been arrested who allegedly oversaw computer attacks launched using booters
-
Will triple extortion ransomware truly take off?
In-depth Operators are now launching attacks with three extortion layers, but there are limitations to this model
-
GoDaddy web hosting review
Reviews GoDaddy web hosting is backed by competitive prices and a beginner-friendly dashboard, and while popular, beware of hidden prices
-
Japan investigates potential Russian Killnet cyber attacks
News The hacker group has said it’s revolting against the country’s militarism and that it’s “kicking the samurai”
-
LockBit hacking group to be 'more aggressive' after falling victim to large-scale DDoS attack
News The ransomware group is currently embroiled in a battle after it leaked data belonging to cyber security company Entrust
-
Record for the largest ever HTTPS DDoS attack smashed once again
News The DDoS attack lasted 69 minutes and surpassed the previous record of 26 million RPS
-
Cloudflare mitigates biggest ever HTTPS DDoS attack
News A botnet generated over 212 million HTTPS requests from over 1,500 networks in 121 countries