9:58 AM PDT · April 20, 2026
Mastodon’s flagship server was deed by a distributed denial-of-service onslaught connected Monday, nan societal networking package shaper said, which rendered nan lawsuit unusable astatine times.
Much of nan tract was inaccessible, throwing correction messages aliases displaying a full-screen outage warning.
The makers of nan decentralized societal networking software, which runs its charismatic mastodon.social instance, said successful a status update at astir 7 a.m. ET connected Monday that it was investigating nan cyberattack.
By 9:05 a.m. ET, Mastodon said it implemented a “countermeasure against nan DDoS attack, and nan tract is accessible.” However, nan institution warned that immoderate instability whitethorn proceed to beryllium seen arsenic nan onslaught is ongoing.
The cyberattack targeting Mastodon comes days aft Bluesky, different decentralized societal network, resolved overmuch of its days-long outages pursuing a lengthy DDoS attack. As of Bluesky’s most caller update connected April 17, nan DDoS onslaught continues, but its work has been unchangeable since April 16 astatine 9 PM PDT.
Representatives for Mastodon did not instantly remark connected nan origin of nan cyberattack erstwhile contacted by TechCrunch.
Image Credits:TechCrunch (screenshot)Distributed denial-of-service (DDoS) attacks trust connected sending monolithic amounts of junk web postulation towards an app aliases website’s servers, pinch nan purpose of knocking them offline. These cyberattacks don’t impact information theft, but DDoS attacks tin beryllium disruptive to users.
DDoS attacks person go exponentially much powerful complete nan years. Last year, web information institution Cloudflare said it mitigated what it says is nan largest DDoS onslaught to date, measuring a highest of 29.7 terabits per second, nan balanced of filling up thousands of difficult drives pinch information each minute.
When aimed astatine decentralized societal networking services, nan attacks tin origin instability and outages, but not everyone is taken offline. In Bluesky’s case, for instance, those who had moved their relationship to different providers, for illustration Blacksky, which tally connected nan aforesaid protocol and interoperate pinch Bluesky, were not impacted.
Similarly, nan onslaught connected Mastodon has truthful acold targeted only nan larger server (mastodon.social) and not nan galore smaller instances that dress up nan afloat Mastodon societal network.
Zack Whittaker is nan information editor astatine TechCrunch. He besides authors nan play cybersecurity newsletter, this week successful security.
He tin beryllium reached via encrypted connection astatine zackwhittaker.1337 connected Signal. You tin besides interaction him by email, aliases to verify outreach, astatine zack.whittaker@techcrunch.com.
Sarah has worked arsenic a newsman for TechCrunch since August 2011. She joined nan institution aft having antecedently spent complete 3 years astatine ReadWriteWeb. Prior to her activity arsenic a reporter, Sarah worked successful I.T. crossed a number of industries, including banking, unit and software.
You tin interaction aliases verify outreach from Sarah by emailing sarahp@techcrunch.com aliases via encrypted connection astatine sarahperez.01 connected Signal.
1 day ago
English (US) ·
Indonesian (ID) ·