A DDoS in Asia Pacific

UPD: As of July, 13, ordinary service has been restored everywhere, except for mainland China.

Just in case you're not following us on Twitter, Telegram's Asia Pacific server cluster has been under a DDoS attack since morning on July, 10.

This means that if you live in South East Asia, Oceania, Australia or certain parts of India, you may have been experiencing slower connection speeds or no connection at all for several hours that weekend.

What is this DDasdf thing?

DDoS stands for Distributed Denial of Service and means that a lot of computers start making requests to a server, so that the server is slowed down or stops responding. To put this into familiar terms, imagine a thousand people jamming themselves into a bus at 6 PM on a weekday. They get in, you don‘t and that’s all a DDoS attack is.

Unlike on the bus though, the people who are getting in your way don‘t even know they’re doing this. DDoS attacks are carried out by botnets — thousands of computers and servers that were turned into remotely controlled zombies by malware and viruses.

What exactly hit Telegram?

We've been hit with 200 Gbps of junk traffic, which feels roughly like having 200 billion very random people squeeze into your bus every second. For the most part, it was a relatively new type of DDoS known as Tsunami SYN flood, but the attackers have shown some flexibility in their methods and adapted to changes pretty quickly.

The garbage traffic came from about a hundred thousand infected servers, most noticeably, in LeaseWeb B.V., Hetzner Online AG, PlusServer AG, NFOrce Entertainment BV, Amazon and Comcast networks. That said, the attack was distributed evenly across thousands of hosts and none contributed more than 5% of the total volume.

Fighting back would‘ve been a little easier, if the abuse departments in most of the mentioned companies didn’t process requests 9-5, Mon-Fri only. (Hours more befitting a scuba-diving shop in Vatican.)

Who's behind this?

Orchestrating a DDoS attack is a criminal offence in most countries and wouldn't bring good publicity to a company, so attackers usually hide their traces as best they can. It could be an angry government or an unhappy competitor.

By now we know that the attack was being coordinated from East Asia.

What's next?

Attacks on the scale of the one we were facing have become possible only recently and it‘s the first time we’ve met anything like this. But some of us have over 10 years of operating major web-services in Europe under our belts, so don't you worry!

We've managed to stay online for 95% of our users worldwide. And as for defending the affected 5%, we‘ve got quite a few surprises up our sleeve. But we’d rather not talk about them here, since the attackers are certainly reading this as well. (hi there! ;)

So while we can't really tell you any details, we have good reasons to hope that connection will be flawless as usual for 100% of our users again. Take heart and tell your friends. Our sysadmin cyborgs are working on this 24 hours a day.


July 13, 2015
The Telegram Team


다른 뉴스

AI 에디터, 마이티 폴, 라이브 포토, 봇이 관리하는 봇, 그리고 그 외 더 많은 기능

오늘 업데이트에서는 두 번의 탭만으로 텍스트를 번역, 변환 또는 수정할 수 있는 AI 에디터, 미디어 첨부 및 활성 설문에 대한 새로운 응답 제안과 같은 설문조사용 신규 기능, 모든 앱에서 라이브 및 모션 사진 지원, 다른 봇을 생성하고 관리할…
3월 31, 2026

멤버 태그, 텔레그램으로 로그인, 공유 비활성화, GIF 편집, 날짜 형식 지정, 투표 타임스탬프

오늘 업데이트에서는 그룹 구성원이 자신을 나타낼 수 있도록 태그를 추가하고, 특정 1:1 대화에서 메시지 공유를 비활성화하는 설정, GIF 편집 및 캡션 기능, 텔레그램으로 앱과 웹사이트에 가입 및 로그인할 수 있는 새로운 도구 등 다양한 기능이…
3월 1, 2026

새로운 디자인, 제작 기능 등

이번 업데이트는 안드로이드용 텔레그램 역사상 가장 큰 인터페이스 업데이트와, 독점적인 새로운 선물을 제작할 수 있는 크래프팅 시스템 등 다양한 기능을 추가합니다.
2월 9, 2026

AI 요약, 새로운 디자인 및 기타 기능

텔레그램의 2026년 첫 번째 업데이트는 iOS에서 더욱 많은 Liquid Glass 인터페이스와 채널 게시물 및 인스턴트 뷰 페이지에 대한 AI 요약 기능을 제공합니다. 이 모든 것은 프라이버시 극대화와 사용자 데이터 보호를 위해 설계되었습니다.
1월 3, 2026