June 2026 brought DDoS attacks against public safety systems, national exam infrastructure, and internet freedom tools, alongside an attempted attack on a sports betting platform during one of the highest-traffic sports events of the year.
Some of the DDoS attacks reported by the media during June include:
India CBSE Re-evaluation Portal DDoS Attack
On June 2, India’s Central Board of Secondary Education (CBSE) detected and blocked over 100,000 unauthorized access attempts within minutes of its re-evaluation portal going live, alongside a DoS attack generating 1.5 million hits in two minutes. Attacks continued the following day, with nearly 3.8 million malicious packets recorded on June 3. CBSE is the national body overseeing school examinations. Link
Sports-Betting Platform DDoS Attack
On June 10, the eve of the World Cup’s opening match, a sports-betting platform was hit by a flash DDoS attack firing 786,000 requests in 87 seconds, peaking at nearly 18,000 requests per second. DataDome traced the attack to Biterika Group LLC, a Russia-based hosting provider previously linked to DDoS attacks against media organizations. The attack was detected and blocked. Link
Russian VPN Services DDoS Attack
Russia’s federal media regulator Roskomnadzor allegedly escalated its tactics from blocking VPN services to actively DDoS-attacking their infrastructure. Amnezia VPN, one of the most widely used tools for bypassing Russian government internet restrictions, was left nearly non-functional for several days. Roskomnadzor did not comment on the allegation. Link
Everbridge/AlertDC DDoS Attack (Unverified Attribution)
On June 26, the D.C. Homeland Security and Emergency Management Agency confirmed a nationwide outage affecting Everbridge, the platform behind AlertDC, Washington D.C.’s emergency notification system. AlertDC distributes alerts covering extreme weather, government and school closures, crime advisories, power outages, and Amber Alerts. 313 Team claimed responsibility. The outage is confirmed; the attribution to 313 Team is not, beyond the group’s own claim. Link
U.S. National Weather Service DDoS Attack (Unverified Attribution)
On June 27, 313 Team claimed responsibility for an attack on the National Weather Service (NWS) website. A local NWS office in Grand Junction, Colorado confirmed the outage on X, though no national NWS communications channel has attributed the disruption to a cyberattack. The timing was notable: Colorado was under critical fire weather conditions and a heat dome was forecast to affect the eastern half of the country. Link
Want to learn more about protecting your organization from damaging DDoS downtime? reach out to us here
Key Takeaways from Recent DDoS Attacks
- June 2026 attacks hit public safety systems, education infrastructure, internet freedom tools, and sports betting platforms.
- 313 Team claimed two U.S. public safety attacks, but attribution remains unverified in both cases.
- User impact ranged from disrupted emergency alerts and blocked weather data to inaccessible exam portals and degraded VPN access.
- No sector is exempt, and continuous DDoS validation is the only reliable way to confirm protections will hold.