EZF3 ยท Observed attack

UDP payload flood on Akamai Connected Cloud in United States

ยท Event #5

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

EZF3 vector 7 sends UDP payloads through its own registered handler; the embedded payload bank contains the NeTiS/Thisity banner.

All UDP payload flood observations
Observed
2026-09-27T14:39:25.349Z
Recorded

Recorded 8m 33s after observation

Affected network
172.233.148.212/32
Network operator
Akamai Connected CloudAS63949
Method
UDP payload floodVector 7
Protocol
udp
Destination port
53
Commanded duration
15s
Observed via
176.53.159.21

All controllers with retained sightings of this order. Older records may have incomplete source coverage.

Geolocation data
ipinfo-lite ยท 2026-07

Snapshot taken at ingestion; it is never re-resolved later.

Other attacks on this network

Within 24 hours of this observation

No other observations within 24 hours.

Other attacks in this country

Within 24 hours of this observation

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.