Baj.Media DDoS Attacks Target Exiled Belarusian Media Outlets
Article Content
- •Six exiled Belarusian media outlets have faced DDoS attacks since March 2026.
- •The attacks are believed to be linked to Belarusian authorities aiming to suppress political reporting.
- •A major attack on Pozirk involved over 14 billion requests, causing significant website outages.
Since March 2026, at least six exiled Belarusian news outlets and one journalists' association have been subjected to distributed denial-of-service (DDoS) attacks aimed at overwhelming their websites. The targeted sites, which include Zerkalo, Reform.news, and Nasha Niva, have been labeled 'extremist' by Belarusian authorities and are effectively banned from operating in Belarus. Staff reported that these attacks are part of a broader pattern of transnational repression linked to political coverage. Notably, the independent news portal Zerkalo had to implement additional verification steps due to the attacks, which included CAPTCHAs to confirm human visitors. A significant DDoS attack against Pozirk on May 9-10 involved over 14 billion requests from more than 31,000 IP addresses, causing a near-total outage despite mitigation efforts from Cloudflare. The ongoing crackdown on independent media follows the 2020 protests against President Aleksandr Lukashenko's disputed re-election. As of now, the affected outlets continue to bolster their defenses against these persistent cyber threats.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track Belarusian Association Of Journalists in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…