11 comments

[ 0.22 ms ] story [ 10.0 ms ] thread
There has been also DDoS against my friend's employer ISP. He had to work a lot to mitigate. There was a random request before
[flagged]
The actual interesting part about such an attack is not that something is down, but rather why someone would run it. A lot of DDoS originates from script kiddies, but such attacks are usually very short lived as attacks are expensive. So which actor would actually benefit from downing the Norwegian government?
The Internet was supposed to withstand a nuclear attack
The bus card ride purchase system was down today in my part of Finland. I wonder if it is related.
Many important services with problems. Ouch. My guess is that the root cause is misconfiguration rather than an attack.
Would the attack be successful is the Norwegian government used a way to protect itself against ddos like cloudflare or akamai?
There's some interesting commentry at https://www.techtimes.com/articles/322754/20260803/norway-id... , which suggests that the widespread outage is due to a single point of failure:

> ID-Porten: When One Gateway Controls Everything

> At the center of the disruption is ID-porten — the national login gateway operated by Norway's Digitaliseringsdirektoratet (Digdir), the government agency responsible for public-sector digitalization. ID-porten functions as the single sign-on portal through which Norwegian citizens authenticate themselves to access public digital services.

It seems to be a corporate service provider that's a dependency for many other services.

<hat type="tinfoil">I wonder who wants the Norwegian gov infrastructure between a TLS terminating proxy service</hat>
I'd guess someone in the us fat-fingered ip ranges and mixed up 2.144.0.0/14 (Iran) with 2.148.0.0/14 (Norway)