Solana Hit By One Of The Largest DDoS Attacks In Internet History

bitcoinistPublished on 2025-12-16Last updated on 2025-12-16

Abstract

Solana has successfully withstood one of the largest DDoS attacks in internet history, estimated at 6 Tbps, without significant performance degradation. Despite the massive scale of the attack, which lasted for over a week, the network maintained median transaction confirmations around 450ms and stable slot latency. Ecosystem builders highlighted that the attack had zero noticeable impact on regular users or traders. The event underscores that blockchains have become high-value targets for industrial-scale DDoS campaigns. Solana’s resilience is attributed to its engineering and validator infrastructure, though experts note that validator count alone isn’t the sole factor in network defense. At the time of reporting, SOL traded at $126.

Solana has been battling what some ecosystem builders are calling an internet-scale DDoS campaign — and, despite the usual “Solana is fragile” jokes, the network seems to be shrugging it off.

Pipe Network said of the ongoing attack via X today: “The ongoing DDoS attack on Solana is one of the largest in internet history. 6 Tbps volumetric attack translates to billions of packets per second. Under that kind of load, you’d normally expect rising latency, missed slots, or confirmation delays.”

Pipe further says that’s not what the data is showing. “Median tx confirmation ~450ms,” the team wrote, adding that p90 remains under 700ms and slot latency is holding at 0–1 slots. In other words, if you’re a regular user or trader, you might not even know anything’s happening. Which is kind of the point.

Largest DDos attacks in internet history | Source: X @pipenetwork

Reactions From The Solana Community

Raj Gokal, Solana Labs’ co-founder and COO, put it more bluntly in a reply to a broader DDoS debate: “have you heard about the ongoing DDOS against Solana that has had zero effect on performance?”

The backdrop here matters. Justin Bons had posted about Sui being DDoS’d yesterday, claiming it triggered “mass delays” and arguing that “127 validators is not enough,” with the broader warning: don’t let validator counts drift too low if you want a chain to be resilient.

Mert Mumtaz, CEO of Helius, largely agreed with the premise — but pushed back on the simplistic “more validators = solved” framing.

“I understand your point & mostly agree with you,” Mert wrote, before adding that “a chain is more resistant to DDoS with 100 professional high powered validators compared to 10k validators run by amateurs.” He also said there are scenarios where higher validator count can help, but emphasized it isn’t the core defense by itself. Then he dropped the key detail: Solana’s attack hasn’t been a one-day headline, it’s been going on for a while.

“And fyi there has been a colossal ddos attack on Solana for weeks now,” Mert wrote, later adding that Solana “has been under a colossal DDoS attack for at least over a week now btw” — and that the fact most users haven’t felt it is “a big testament to the level of engineering present here.”

Solana co-founder Anatoly Yakovenko chimed in with a more technical angle on why validator count can matter in specific leader-hand-off dynamics: “Validators count helps if the previous leader can finish their block while the current one is being hit. Then the cost of ddos approaches the cost of ddos the whole network.”

Translation: if an attacker wants to reliably disrupt block production, they may have to sustain pressure across more of the network, not just pick off a single leader at the wrong moment. That gets expensive fast.

SolanaFloor summed it up via X: “Solana has been under a sustained DDoS attack for the past week, peaking near 6 Tbps, the 4th largest attack ever recorded for any distributed system. Network data shows no impact, with sub second confirmations and stable slot latency. The Sui network was also targeted by a DDoS attack yesterday, resulting in delays in block production and periods of degraded network performance.”

And there’s a more strategic takeaway that’s starting to sound less theoretical each month: blockchains are now juicy targets. David Rhodus, founder of Permissionless Labs (and a contributor to Pipe Network), said: “This puts Solana among the most heavily DDoSed targets in internet history. It reinforces that blockchains are now Tier-1 DDoS targets. This is not “script kiddie” activity — 6 Tbps is industrial-scale.”

If you’re a validator, Mumtaz offered the practical advice you’d expect in a week like this: have backups across multiple hosting providers and regions. Because even if the chain holds, your own infrastructure might not.

The broader point, though, is the new baseline: these networks are getting stress-tested like mainstream internet services now. Solana’s claim today is that it passed — quietly, under load, and without users noticing. That’s the kind of victory that doesn’t look dramatic on a chart. It just [...] works.

At press time, Solana traded at $126.

SOL remains above the 200-week EMA, 1-week chart | Source: SOLUSDT on TradingView.com

Trending Cryptos

Related Reads

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

Coldcard Hardware Wallet Hacked: Losses Mount Due to Vulnerable Seed Generation A critical vulnerability in Coldcard hardware wallets has led to a continued wave of fund thefts. According to Galaxy Research, the total stolen has reached 1,367.05 BTC (approx. $88.6 million) from 4,585 addresses, a significant increase from the initial 594.5 BTC reported on July 30, 2026. Most of the stolen funds remain on the attackers' addresses. The issue is not with the current firmware, which Coinkite has updated, but with seed phrases generated on vulnerable devices between March 2021 and the release of fixed firmware versions. Due to a programmer error, devices switched from using a hardware random number generator to the software-based Yasmarang generator, which was initialized with publicly accessible data like the chip's serial number. This made the seed phrases predictable through offline brute-force attacks, meaning wallets remain at risk until funds are moved to a new wallet generated with the patched firmware. Affected devices include Mk2/Mk3 with firmware 4.0.1–4.1.9 (and up to 5.0.3), Mk4/Mk5 up to version 5.6.0, and Q models up to 1.5.0Q. The only exceptions are seeds created with a high-entropy method like at least 50 independent dice rolls or a strong unique BIP-39 passphrase. All other owners must generate a new seed on the fixed firmware and transfer their assets. A case highlighting the human impact involves a 39-year-old long-term investor who lost 2 BTC (approx. $130,000) in minutes. He had accumulated the Bitcoin over eight years through physical labor, viewing it as a financial lifeline and a retirement plan in a country suffering from hyperinflation. His story underscores that even conservative "buy and hold in cold storage" strategies can be compromised by such underlying technical flaws. From a technical perspective, this incident echoes historical failures where weak random number generators undermined cryptographic security, challenging the assumption that offline storage is automatically foolproof.

cryptonews.ru3h ago

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

cryptonews.ru3h ago

Trading

Spot

Hot Articles

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of SOL (SOL) are presented below.

活动图片