Saturday, August 15, 2026
LIVE
Ugandan villages still contest land titles as oil development advances///Nigerian Troops Repel Bandit Attack on Kebbi Workers///NLC Queries Lagos Chairman Over Ties to Pro-Tinubu Group///Côte d’Ivoire Names New Leader for Blé Goudé’s COJEP Party///United States Highlights Civilian Deaths in Nigeria Terror Fight///Zimbabwe Pledges New Ferry and Road Repair After Lake Kariba Disaster///Ebola death toll reaches two thousand in Democratic Republic of the Congo///Forced Conscription Reports Emerge Across Ethiopia Oromia Region///Ebola outbreak reaches displacement camps in eastern Democratic Republic of the Congo///Hacking Group Claims Data Theft from Shell and Other Global Firms///Turkey warns of radical measures if Israel rejects Gaza peace deal terms///Nigerian President Urged to Engage Niger Delta Leader for Reelection Campaign///Ugandan villages still contest land titles as oil development advances///Nigerian Troops Repel Bandit Attack on Kebbi Workers///NLC Queries Lagos Chairman Over Ties to Pro-Tinubu Group///Côte d’Ivoire Names New Leader for Blé Goudé’s COJEP Party///United States Highlights Civilian Deaths in Nigeria Terror Fight///Zimbabwe Pledges New Ferry and Road Repair After Lake Kariba Disaster///Ebola death toll reaches two thousand in Democratic Republic of the Congo///Forced Conscription Reports Emerge Across Ethiopia Oromia Region///Ebola outbreak reaches displacement camps in eastern Democratic Republic of the Congo///Hacking Group Claims Data Theft from Shell and Other Global Firms///Turkey warns of radical measures if Israel rejects Gaza peace deal terms///Nigerian President Urged to Engage Niger Delta Leader for Reelection Campaign///
Subscribe
Africa
Independent · Digital
The African Herald
PoliticsAI-assisted

Keymous+ Hacker Group Claims 700+ DDoS Attacks Around The Globe

A hacktivist collective known as Keymous+ has emerged as a significant threat actor in the global cybersecurity landscape, claiming responsibility for over 700 distributed denial-of-service (DDoS) attacks throughout 2025.

A hacktivist collective known as Keymous+ has emerged as a significant threat actor in the global cybersecurity landscape, claiming responsibility for over 700 distributed denial-of-service (DDoS) attacks throughout 2025.

The group, which identifies itself as “North African hackers,” has been actively targeting organizations across Europe, North Africa, the Middle East, and parts of Asia since late 2023, with their operations gaining substantial momentum in recent months.

The group’s attack strategy demonstrates a concerning lack of ideological consistency, targeting diverse sectors including government websites, telecommunications providers, financial platforms, educational institutions, and manufacturing infrastructure.

Their victims span multiple countries, with India (10.7%), France (10.3%), and Morocco (8.61%) representing the most heavily targeted nations. Government entities comprise 27.6% of their targets, making them the primary focus of Keymous+ operations.

Radware analysts identified the group’s dual operational structure, consisting of an “Alpha Team” responsible for data breaches and leaks, which is currently inactive, and a “Beta Team” focused exclusively on DDoS operations.

This organizational framework suggests a sophisticated approach to cyber warfare , allowing the group to specialize in different attack methodologies while maintaining operational security.

A hacktivist collective known as Keymous+ has emerged as a significant threat actor in the global cybersecurity landscape, claiming responsibility for over 700 distributed denial-of-service (DDoS) attacks throughout 2025.
Kwame Osei · The African Herald

The group’s commercial connections raise significant questions about their true nature as hacktivists .

Evidence suggests Keymous+ operates or maintains close affiliations with EliteStress, a commercial DDoS-for-hire service offering attack capabilities ranging from €5 per day to €600 per month.

Keymous+ alliances and coordinated operations demonstrating collaborations (Source – Radware) This platform provides access to various attack vectors including DNS amplification, UDP floods, attacks, and spoofed SSH traffic.

Technical Infrastructure and Attack Methodology

The technical sophistication of Keymous+ operations extends beyond traditional hacktivist capabilities.

Their EliteStress platform features a comprehensive attack panel offering multiple vectors designed to bypass modern DDoS protection systems.

Advertisement

The service includes DNS amplification attacks that leverage public DNS servers to amplify traffic volumes, UDP flood attacks targeting specific ports and protocols, and advanced flood techniques that can overwhelm web servers with legitimate-looking requests.

The group’s attack methodology incorporates both volumetric and application-layer techniques, with their platform supporting concurrent attacks across multiple global endpoints.

Their infrastructure demonstrates the evolution of modern DDoS-as-a-Service operations, blending hacktivist messaging with commercial cybercrime infrastructure.

Investigate live malware behavior, trace every step of an attack, and make faster, smarter security decisions ->  Try ANY.RUN now

Based on reporting by Cyber Security News.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories