Cereal2 ยท Observed attack

AS401696 UDP flood on 154.12.24.248 | 2026-09-07 11:40:52Z

ยท Event #201121

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

Cereal2 vector 1: UDP flood with large datagrams (default 1400-byte payload).

All UDP flood with large datagrams (default 1400-byte payload) observations
Observed
2026-09-07T11:40:52.422Z
Recorded

Recorded 327ms after observation

Affected network
154.12.24.248/32
Network operator
cognetcloud INCAS401696
Method
UDP flood with large datagrams (default 1400-byte payload)Vector 1
Protocol
udp
Destination port
80
Commanded duration
1m
Observed via
159.65.203.118

All controllers with retained sightings of this order. Older records may have incomplete source coverage.

Geolocation data
ipinfo-lite ยท 2026-07

Snapshot taken at ingestion; it is never re-resolved later.

Other attacks on this network

Within 24 hours of this observation

Other attacks in this country

Within 24 hours of this observation

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.