{"id":7633,"date":"2017-09-26T22:06:17","date_gmt":"2017-09-26T22:06:17","guid":{"rendered":"http:\/\/blog.nsfocusglobal.com\/?p=851"},"modified":"2017-09-26T22:06:17","modified_gmt":"2017-09-26T22:06:17","slug":"phantom-squad-ddos-threat","status":"publish","type":"post","link":"https:\/\/nsfocusglobal.com\/pt-br\/phantom-squad-ddos-threat\/","title":{"rendered":"Phantom Squad &#8211; DDoS Threat"},"content":{"rendered":"<p><strong>Overview<\/strong><\/p>\n<p>It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on September 30th.\u00a0 Below you will find a screenshot of the mass spear-phishing email that has been distributed to many organization and companies around the world. They are currently asking for $720 or .2 in bitcoin from the entity to prevent the possibility of becoming a potential victim to the reported DDoS attack.<\/p>\n<p><a href=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM.png\"><img fetchpriority=\"high\" decoding=\"async\" class=\"wp-image-856 aligncenter\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161.png\" alt=\"\" width=\"588\" height=\"316\" \/><\/a><\/p>\n<p>The Phantom Squad made headlines back in 2015 as being associated with various successful denial-of-service attacks to include Xbox live, Sony PlayStation, and Steam.\u00a0 However, some cyber security professionals in the industry claim that this is an empty threat that is only a means to potentially illegally acquire money or bitcoin.\u00a0 Additionally, the email that is being sent to many companies around the world demanding small amounts of money may possibly be a single individual claiming to be affiliated with a once successful illegal organization for the possibility of financial gain.<\/p>\n<p><strong>Targeted Industries<\/strong><\/p>\n<p>Several thousand emails have gone out to many different organizations, companies, and industries; but, for the majority the industries fall into:<\/p>\n<ul>\n<li>Education<\/li>\n<li>Industrial<\/li>\n<li>Finance<\/li>\n<li>Manufacturing &amp; Production<\/li>\n<\/ul>\n<p><strong>Attack Vectors<\/strong><\/p>\n<p>The primary DDoS attack type and protocols associated with DDoS attacks are indicated below. The following protocols were successfully used in previous attacks and are currently on the radar as potentially being used by the Phantom Squad to assist in their upcoming DDoS attack.<\/p>\n<p><strong>DDoS Attack Types:<\/strong><\/p>\n<ul>\n<li>SYN Flood<\/li>\n<li>TCP SYN<\/li>\n<li>SYN ACK<\/li>\n<li>TCP RST<\/li>\n<\/ul>\n<p><strong>Protocols:<\/strong><\/p>\n<ul>\n<li>NTP<\/li>\n<li>UDP<\/li>\n<li>DNS<\/li>\n<li>ICMP<\/li>\n<li>SSDP<\/li>\n<li>SSYN<\/li>\n<\/ul>\n<p><strong>Protective Measures<\/strong><\/p>\n<p>Currently the main recommendation from various security professionals in the industry are stating that if a company or organization received such an email claiming to be from the Phantom Squad they should not give into the ransom demands. However, multiple security solutions exist within the same security realm to include NSFOCUS\u2019s ADS-M solution to help mitigate such denial-of-service attacks.<\/p>\n<p>Today\u2019s DDoS attacks are more frequent, complex, and destructive than ever. They often result in loss of revenue, loss of customers, damage to brand, reduced availability of services, and theft of vital data. The NSFOCUS ADS (Anti-DDoS System) provides comprehensive, multi-layered protection from today\u2019s advanced DDoS threats.<\/p>\n<p>The ADS includes technology powered by internationally-recognized research labs and developed with over 10 years of experience protecting the world\u2019s largest banks, telecommunications, gaming, and social media companies. It uses an innovative, multi-stage approach to monitor, detect, and mitigate the most complex DDoS attacks. This ensures only legitimate traffic reaches important network and application resources, protecting uptime and managing risks associated with DDoS.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on September 30th.\u00a0 Below you will find a screenshot of the mass spear-phishing email that has been distributed to many organization and companies around the world. They are currently asking [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":35816,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_coblocks_attr":"","_coblocks_dimensions":"","_coblocks_responsive_height":"","_coblocks_accordion_ie_support":"","footnotes":""},"categories":[5,7,15],"tags":[],"class_list":["post-7633","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ddos-mitigation","category-events","category-research-reports"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Phantom Squad - DDoS Threat - NSFOCUS<\/title>\n<meta name=\"robots\" content=\"noindex, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"pt_BR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Phantom Squad - DDoS Threat - NSFOCUS\" \/>\n<meta property=\"og:description\" content=\"Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/\" \/>\n<meta property=\"og:site_name\" content=\"NSFOCUS\" \/>\n<meta property=\"article:published_time\" content=\"2017-09-26T22:06:17+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Phantom Squad - DDoS Threat - NSFOCUS\" \/>\n<meta name=\"twitter:description\" content=\"Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. tempo de leitura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/\"},\"author\":{\"name\":\"admin\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#\\\/schema\\\/person\\\/fd9ab61c9c77a81bbd870f725cc0c61d\"},\"headline\":\"Phantom Squad &#8211; DDoS Threat\",\"datePublished\":\"2017-09-26T22:06:17+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/\"},\"wordCount\":438,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/09\\\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\",\"articleSection\":[\"DDoS Mitigation\",\"Global Events\",\"Research &amp; Reports\"],\"inLanguage\":\"pt-BR\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/\",\"name\":\"Phantom Squad - DDoS Threat - NSFOCUS\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/09\\\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\",\"datePublished\":\"2017-09-26T22:06:17+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#breadcrumb\"},\"inLanguage\":\"pt-BR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#primaryimage\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/09\\\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\",\"contentUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/09\\\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png\",\"width\":300,\"height\":161,\"caption\":\"Email warning about a DDoS attack threat.\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/phantom-squad-ddos-threat\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/nsfocusglobal.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Phantom Squad &#8211; DDoS Threat\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#website\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/\",\"name\":\"NSFOCUS\",\"description\":\"Security Made Smart and Simple\",\"publisher\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"pt-BR\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#organization\",\"name\":\"NSFOCUS\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/logo-ns.png\",\"contentUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/logo-ns.png\",\"width\":248,\"height\":36,\"caption\":\"NSFOCUS\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/#\\\/schema\\\/person\\\/fd9ab61c9c77a81bbd870f725cc0c61d\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"caption\":\"admin\"},\"sameAs\":[\"https:\\\/\\\/nsfocusglobal.com\"],\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/author\\\/admin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Phantom Squad - DDoS Threat - NSFOCUS","robots":{"index":"noindex","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"pt_BR","og_type":"article","og_title":"Phantom Squad - DDoS Threat - NSFOCUS","og_description":"Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on","og_url":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/","og_site_name":"NSFOCUS","article_published_time":"2017-09-26T22:06:17+00:00","og_image":[{"url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","type":"","width":"","height":""}],"author":"admin","twitter_card":"summary_large_image","twitter_title":"Phantom Squad - DDoS Threat - NSFOCUS","twitter_description":"Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on","twitter_image":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","twitter_misc":{"Escrito por":"admin","Est. tempo de leitura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#article","isPartOf":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/"},"author":{"name":"admin","@id":"https:\/\/nsfocusglobal.com\/pt-br\/#\/schema\/person\/fd9ab61c9c77a81bbd870f725cc0c61d"},"headline":"Phantom Squad &#8211; DDoS Threat","datePublished":"2017-09-26T22:06:17+00:00","mainEntityOfPage":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/"},"wordCount":438,"commentCount":0,"publisher":{"@id":"https:\/\/nsfocusglobal.com\/pt-br\/#organization"},"image":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#primaryimage"},"thumbnailUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","articleSection":["DDoS Mitigation","Global Events","Research &amp; Reports"],"inLanguage":"pt-BR","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/","url":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/","name":"Phantom Squad - DDoS Threat - NSFOCUS","isPartOf":{"@id":"https:\/\/nsfocusglobal.com\/pt-br\/#website"},"primaryImageOfPage":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#primaryimage"},"image":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#primaryimage"},"thumbnailUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","datePublished":"2017-09-26T22:06:17+00:00","breadcrumb":{"@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#breadcrumb"},"inLanguage":"pt-BR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/"]}]},{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#primaryimage","url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","contentUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/09\/Screen-Shot-2017-09-25-at-2.42.40-PM-300x161-1.png","width":300,"height":161,"caption":"Email warning about a DDoS attack threat."},{"@type":"BreadcrumbList","@id":"https:\/\/nsfocusglobal.com\/phantom-squad-ddos-threat\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/nsfocusglobal.com\/"},{"@type":"ListItem","position":2,"name":"Phantom Squad &#8211; DDoS Threat"}]},{"@type":"WebSite","@id":"https:\/\/nsfocusglobal.com\/pt-br\/#website","url":"https:\/\/nsfocusglobal.com\/pt-br\/","name":"NSFOCUS","description":"Security Made Smart and Simple","publisher":{"@id":"https:\/\/nsfocusglobal.com\/pt-br\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nsfocusglobal.com\/pt-br\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"pt-BR"},{"@type":"Organization","@id":"https:\/\/nsfocusglobal.com\/pt-br\/#organization","name":"NSFOCUS","url":"https:\/\/nsfocusglobal.com\/pt-br\/","logo":{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/nsfocusglobal.com\/pt-br\/#\/schema\/logo\/image\/","url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2024\/08\/logo-ns.png","contentUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2024\/08\/logo-ns.png","width":248,"height":36,"caption":"NSFOCUS"},"image":{"@id":"https:\/\/nsfocusglobal.com\/pt-br\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/nsfocusglobal.com\/pt-br\/#\/schema\/person\/fd9ab61c9c77a81bbd870f725cc0c61d","name":"admin","image":{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","caption":"admin"},"sameAs":["https:\/\/nsfocusglobal.com"],"url":"https:\/\/nsfocusglobal.com\/pt-br\/author\/admin\/"}]}},"_links":{"self":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts\/7633","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/comments?post=7633"}],"version-history":[{"count":0,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts\/7633\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/media\/35816"}],"wp:attachment":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/media?parent=7633"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/categories?post=7633"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/tags?post=7633"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}