Cereal2 ยท Observed attack

AS3257 UDP flood on 208.97.209.102 | 2026-09-07 01:18:30Z

ยท Event #198461

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

Cereal2 vector 1: UDP flood with large datagrams (default 1400-byte payload).

All UDP flood with large datagrams (default 1400-byte payload) observations
Observed
2026-09-07T01:18:30.616Z
Recorded

Recorded 99ms after observation

Affected network
208.97.209.102/32
Network operator
GTT Communications Inc.AS3257
Method
UDP flood with large datagrams (default 1400-byte payload)Vector 1
Protocol
udp
Destination port
Randomized
Commanded duration
1m
Observed via
165.245.237.41

All controllers with retained sightings of this order. Older records may have incomplete source coverage.

Geolocation data
ipinfo-lite ยท 2026-07

Snapshot taken at ingestion; it is never re-resolved later.

Other attacks on this network

Within 24 hours of this observation

Other attacks in this country

Within 24 hours of this observation

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.