HomeTechComputingMicrosoft Azure Repels Record 15.72 Tb
COMPUTING

Microsoft Azure Repels Record 15.72 Tbps Cloud DDoS Attack

Automated defenses stopped a multi-vector assault from the Aisuru botnet targeting an Australian endpoint on October 24.

WHAT YOU NEED TO KNOW
  • Microsoft Azure mitigated a 15.72 Tbps, 3.64 billion packet-per-second DDoS attack on Oct. 24, 2025.
  • The assault originated from more than 500,000 IP addresses controlled by the Mirai-derived Aisuru IoT botnet.
  • The traffic targeted a single endpoint in Australia using UDP bursts with minimal source spoofing.

Microsoft Azure blocked a record-breaking 15.72 terabit-per-second distributed denial-of-service attack on Oct. 24, TechRepublic reported. The assault targeted a single endpoint in Australia and generated nearly 3.64 billion packets per second.

Azure DDoS Protection detected and mitigated the multi-vector incident automatically, keeping cloud services and customer workloads online throughout the event. Sean Whalen, senior product marketing manager at Azure Security, confirmed in a blog post that the incident was the largest DDoS attack ever observed in the cloud.

Microsoft traced the traffic to the Aisuru botnet, an IoT malware strain derived from Mirai. The attack mobilized more than 500,000 IP addresses across multiple regions, relying on compromised home routers and connected cameras located primarily on residential internet service providers in the United States and other countries.

Attack mechanics and botnet history

Attackers directed rapid bursts of UDP packets against the Australian target using randomized ports and minimal source spoofing. Microsoft absorbed and filtered the malicious flow in real time through its global network of scrubbing centers.

The Aisuru botnet has been tied to multiple high-volume incidents across the cybersecurity sector. Cloudflare linked the same botnet to a 22.2 Tbps attack earlier in the year, and security researchers at Qi’anxin previously tracked an 11.5 Tbps strike to the group. Whalen noted that faster fiber-to-the-home connections and higher-capacity consumer hardware have continued to push baseline attack sizes upward.

Microsoft warned organizations not to delay defense testing until an attack occurs, urging them to conduct regular operational drills and simulations ahead of anticipated traffic surges during end-of-year shopping periods.

Xentir Media
Xentir Media NewsroomSource-backed AI and technology coverage, drafted by Xentir's automated editorial system under fixed human-set rules. See our editorial policy and AI usage policy.
J
Jomon · Founder & EditorFounder and editor of Xentir Media. Sets the editorial rules the newsroom system runs under, and is accountable for its corrections. About Jomon · [email protected]
The Xentir Brief
The developments worth knowing — one useful email.
Get the Brief →