FBI seizes NightmareStresser domains in booter service crackdown

A service that rented out denial-of-service floods for three years is offline, but the market it served is not.

CSBadmin
2 Min Read

For three years, anyone with a few dollars could point a wall of junk traffic at a school district, a city portal or a game server. That storefront has gone dark.

The Justice Department announced the court-authorized seizure of the domains behind NightmareStresser, which prosecutors rank among the longest-running booter services anywhere. A seizure warrant affidavit says the service launched hundreds of thousands of actual or attempted distributed denial-of-service attacks since 2022, against schools, government agencies, gaming platforms and millions of individuals.

The FBI’s Anchorage Field Office led the action alongside the Royal Canadian Mounted Police’s Federal Policing Northwest Region, under Operation PowerOFF, the long-running international push against booter infrastructure.

Anchorage is not a random venue. Investigators there and in Los Angeles have chased this trade for eight years, charging twelve defendants. More than 100 domains tied to DDoS-for-hire services have been seized. Earlier PowerOFF sweeps knocked out 27 sites in December 2024 and 53 domains across 21 countries in April 2026, alongside four arrests and warning letters to over 75,000 users.

The business model explains the persistence. Customers need no technical skill: pick a target on a website, pay in cryptocurrency, watch a site go dark. Takedowns disrupt infrastructure, but a replacement can appear quickly.

Nothing changes on the defensive side. Commandeered IoT hardware and automated tooling keep pushing the price of a large flood downward, so capacity planning and a rehearsed response plan still matter more than attribution.

CSBadmin

The latest in cybersecurity news and updates.

Share This Article
Follow:
The latest in cybersecurity news and updates.