Cybercrime

Bluesky Disrupted by Sophisticated DDoS Attack

A pro-Iran hacker group has taken credit for the attack on Bluesky, which appears to have lasted 24 hours. 

DDoS attack

Bluesky, the decentralized microblogging social media platform, reported service outages last week due to a distributed denial-of-service (DDoS) attack aimed at its systems.

The DDoS attack appears to have started late on April 15 (Pacific Time) and continued into the next day. The company described it as a sophisticated attack that caused intermittent app outages.  

“The attack is impacting our application, with users experiencing intermittent interruptions in service for their feeds, notifications, threads and search,” Bluesky said.

“We have not seen any evidence of unauthorized access to private user data,” it added.

The company did not say who was behind the attack. A hacker group called 313 Team took credit for taking down the social media service, but their claims have not been independently verified. 

313 Team, also known as ‘Islamic Cyber Resistance in Iraq’, claims to be a pro-Iran hacktivist group. The hackers have been active during the ongoing conflict between the United States, Israel, and Iran.

Advertisement. Scroll to continue reading.

While these types of groups may be capable of launching disruptive attacks — they are often a persona used by government agencies — they have been known to make exaggerated or false claims. 

In the statement announcing the attack, 313 Team said the attack was expected to last for 3 hours, but based on Bluesky’s status updates the DDoS attack lasted for roughly 24 hours. 

Bluesky said it managed to mitigate the attack and prevent extended service outages, despite the assault continuing. 

Related: 53 DDoS Domains Taken Down by Law Enforcement

Related: Evasive Masjesu DDoS Botnet Targets IoT Devices

Related: German Rail Giant Deutsche Bahn Hit by Large-Scale DDoS Attack

Related: Aisuru Botnet Powers Record DDoS Attack Peaking at 29 Tbps

Related Content

Nation-State

The attack was claimed by a hacktivist group, but evidence showed it used infrastructure linked to Iranian government threat actors.

Cybercrime

The DDoS attack caused a major outage, but Mastodon mitigated it within a few hours.

Cybercrime

Authorities in 21 countries participated in a coordinated action against DDoS-for-hire services.

Malware & Threats

Focused on persistence, the botnet does not engage in widespread infection and avoids blacklisted IPs and critical infrastructure entities.

Network Security

Akamai warns that Layer 7 DDoS, API abuse and AI-powered attacks are merging into coordinated, multi-vector campaigns that are harder to detect and defend...

Cyberwarfare

The cybersecurity industry is monitoring the landscape and says many of the big claims made by hacktivist groups remain unverified.

Cyberwarfare

Both sides conduct hacking and other attacks, including the deployment of wiper malware, DDoS, and disruptions to critical infrastructure. 

Cybercrime

The group’s administrator and moderator were arrested last year, and two other members were arrested this month.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version