Do you know what are the most common targets of DDoS-for-hire services (apart from other DDoS-for-hire services)? Unregulated online industries that move a lot of money, and that stop moving much money at all when they get attacked (and are thus particularly vulnerable to financial extortion):.

-Gambling
-Gaming (think Minecraft)
-Crypto

I can think of one industry in particular that fits this description and is highly dependent on uptime: AI. All of these companies have to have a giant target on their backs.

@briankrebs In their defense, there has been a relatively decent amount of movement towards on-device solutions.
@briankrebs Many of the key players in that space already have big targets on their back (Google, Microsoft, Meta,etc). I feel that they’re better equipped than most to handle at scale DDoS.
@briankrebs The cannabis industry fits here! And great point about AI, unknowns on top of unknowns.
@dtauvdiodr @briankrebs goes beyond the threat of ddos, i suppose, but i’ve had multiple cannabis/adjacent companies request copies of my id with no encrypted means of getting it to them, no published data-retention policy for pii, etc… seems like an industry that is largely in over its head and rife for exploitation 😬
@brhfl @briankrebs And they're not self-organized enough to do anything about it. Wild west for sure. They are more worried about scraping each others' data.

@briankrebs

Given the fact that many of these "AI" rat-shops are giant DoS offenders themselves, DoS attacks against them are a net benefit to humanity. Especially when you consider the laughably useless results these "AI" rat-shops produce from the resources they extract from other people's works and digital infrastructure.