Telegram hit in major DDoS attack

Attack coincided with recent protests in Hong Kong

When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works.

The encrypted messaging appTelegramwas hit by a distributed denial of service (DDoS) attack while protesters used the app to communicate during recent protests in Hong Kong.

The DDoS attack also appears to have affected the messaging service’s 200m users across the Americas as well as in some other countries according to a tweet sent out by the firm in which it also confirmed that user data was safe.

As opposed to a typical cyberattack which aims to gain access to a company’s systems or its data, DDoS attacks are designed to take a service offline by flooding it with traffic thus making it unusable. Telegram compared a DDoS attack to ordering a Whopper from McDonald’s in atweet, saying:

“A DDoS is a “Distributed Denial of Service attack”: your servers get GADZILLIONS of garbage requests which stop them from processing legitimate requests. Imagine that an army of lemmings just jumped the queue at McDonald’s in front of you – and each is ordering a whopper. The server is busy telling the whopper lemmings they came to the wrong place – but there are so many of them that the server can’t even see you to try and take your order. There’s a bright side: All of these lemmings are there just to overload the servers with extra work – they can’t take away your Big Mac and Coke. Your data is safe.”

Origin of the attack

Origin of the attack

Despite Telegram explaining the DDoS attack it suffered in a humorous way on social media, there is actually a more sinister side to the attack. According to Telegram founder and CEO Pavel Durov, most of the IP addresses behind the attack originated from China as he explained in atweet, saying:

“Historically, all state actor sized DDoS (200-400 GB/s of junk) we experienced coincided in time with protests in Hong Kong (coordinated on @telegram). This case was not an exception.”

The protests in Hong Kong started out peacefully but things became violent when several hundred protesters clashed with police outside the city’s parliament.

Are you a pro? Subscribe to our newsletter

Are you a pro? Subscribe to our newsletter

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

The protests themselves were organized on Telegram,WhatsAppand other similar apps. However, Telegram has shown to be quite useful in these situations due to itsencryptionand the fact that users can create groups of up to 200,000 people as well as broadcast to an unlimited audience.

TheSouth China Morning Postfirst reported on the role the messaging app played in the protests when a Telegram group administrator was arrested for conspiracy to commit public nuisance. The man allegedly had been communicating with 30,000 users who were planning to charge the Legislative Council Complex and block the roads that led to the building.

We will likely learn more once a full investigation is conducted but if China is behind the DDoS attack it shows that the country is willing to interfere with foreign services to keep its populace under control.

ViaForbes

After working with the TechRadar Pro team for the last several years, Anthony is now the security and networking editor at Tom’s Guide where he covers everything from data breaches and ransomware gangs to the best way to cover your whole home or business with Wi-Fi. When not writing, you can find him tinkering with PCs and game consoles, managing cables and upgrading his smart home.

HPE reveals critical security bug affecting networking access points

A critical Palo Alto Networks bug is being hit by cyberattacks, so patch now

Ireland vs New Zealand live stream: how to watch 2024 rugby union Autumn International online from anywhere