INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

PowerOFF DDoS-for-hire takedown

| 2026-04-17 18:30 LOW HIGH
Executive Summary AI-generated
The global landscape of distributed denial-of-service, or DDoS-for-hire attacks has seen a surge in recent incidents. Law enforcement agencies worldwide have been working tirelessly to disrupt the industry, arresting administrators and seizing databases in dozens of countries as part of Operation PowerOFF. Despite years of effort, DDoS services continue to proliferate, offering a low barrier to entry for users seeking cybercriminal activity. The Justice Department has charged over 100 individuals with facilitating these services, while Polish police arrested four people allegedly operating six different sites, offering their services for as little as 10 euros. Europol added that the recent actions are part of an "operational sprint" where countries coordinate to dismantle the infrastructure enabling DDoS attacks.
Technical Mitigations AI-generated
* Implement robust network segmentation and access controls to limit the spread of malware and DDoS-for-hire services within an organization. * Regularly update and patch operating systems, applications, and software to prevent exploitation by known vulnerabilities and reduce the attack surface. * Use a web application firewall (WAF) or intrusion detection system (IDS) to monitor and block suspicious traffic patterns, helping to identify and mitigate DDoS-for-hire attacks. * Utilize encryption technologies, such as SSL/TLS or VPNs, to protect sensitive data in transit and prevent unauthorized access to critical systems.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Operation PowerOFFOperation PowerOFF
Target & Sectors
BENELUX BENELUX NORDICS NORDICS FIVE_EYES FIVE_EYES DACH DACH
Incident Timeline
‎December 2024
Law enforcement agencies disrupted 27 popular platforms, including zdstresser.net and orbitalstress.net, to launch Distributed Denial-of-Service attacks in December.
tactic Ddos
campaign Operation PowerOFF
observable zdstresser.net
observable starkstresser.net
observable orbitalstress.net
attribution Distributed Denial-of-Service
general_metric 27 PowerOFF
‎2025/04/17
Polish authorities arrested four individuals allegedly involved in operating six DDoS-for-hire sites.
tactic Ddos
target_region Poland
financial 10 euros
‎August 2025
The RapperBot botnet was taken down by the US in August 2025.
tactic Botnet
organisation RapperBot
general_metric 80 countries
‎13 April 2026
Four individuals were arrested in connection with the 'PowerOFF' DDoS-for-hire takedown.
general_metric 21 countries
victims 000 criminal users
‎2026/04/17
Authorities arrested four suspects and seized 53 domains linked to DDoS-for-hire services used by over 75,000 cybercriminals.
infrastructure 50 domains
victims 75,000 users
organisation Justice Department
organisation DDoS
infrastructure 100 domains
infrastructure 53 domains
organisation Operation PowerOFF
victims 3 user accounts
organisation SecurityAffairs
organisation Europol
organisation DOJ
organisation Quantum
organisation Mythicalstress
financial $950 plan
infrastructure 90 victim IPs
victims 300 users
Tactical Metrics
Metrics
infrastructure
50
Domains
Metrics
victims
75,000
Users
Metrics
infrastructure
100
Domains
Metrics
financial
10
Euros
Metrics
financial
950
Plan
Metrics
infrastructure
90
Victim Ips
Metrics
infrastructure
53
Domains
Metrics
victims
300
Users
Metrics
victims
3,000,000
User Accounts
Metrics
victims
0
Criminal Users