🚨 CYBERSEC SCAM ALERT
A representative from "Xyrix" reached out yesterday to us, saying our sale site had a security vulnerability.
What followed, was a DDoS attack with 150 million requests per second, temporarily disrupting our sale site.
A person called "Nolan" reached out yesterday evening, claiming to want to disclose a "application layer related security issue".
I knew pretty much that it was probably a "beg bounty" outreach, with a bs security vulnerability trying to beg for some money.
But I asked "Yeah whats that", because I was curious.
Then, moments later I got a notification on my phone about increased error rates on our sale backend.
I investigated, and we received 150 million requests in less than 10 seconds. This brought down our backend temporarily.
"Nolan" then reached out to me and said "It should have issues to load. I'll get into the details then."
After I asked what they had done, they wrote this as the final nail in the coffin:
"""
It's possible to craft a specific POST request that causes the /checkout page to load endless, and bypass the Fastly CDN protection through that also.
"""
This is some next level bs, because first of all, the checkout page is a static site that doesn't do anything with a "POST" request. And we don't even use Fastly CDN.
FUCK YOU
@Xyrixio