Three Days in August: What a DDoS Attack Exposed in Our Network

A network infrastructure provider details their experience surviving a massive 500-600 Gbit/s DDoS attack that targeted their services over three days in August 2026. The postmortem explains the technical challenges of handling traffic volumes exceeding their uplink capacity and the subsequent infrastructure improvements.
Why it matters
Large-scale DDoS attacks remain a significant threat to internet infrastructure, and post-incident analyses provide essential insights for network security and resilience.
RSS Three Days in August: What a DDoS Attack Exposed in Our Network Written by Raphael Knecht Published on September 21, 2026 Share On the evening of 11 August 2026, one of our customers became the target of one of the largest attacks we have ever seen directed at our infrastructure. Because we provide that customer's connection to the internet, the impact hit us directly as well, and a few hours later the attacker turned against our own services too. We already published a technical postmortem as a PDF on this incident. In this post, we want to walk through what actually happened over those three days in more depth, why handling an attack of this size took as long as it did, and what we have changed in our infrastructure since.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in