Bedrock Early Packet Handling DoS Attack Summary and Response
Back in July, we received reports of multiple Geyser instances experiencing targeted Denial of Service (DoS) attacks exhibiting similar characteristics. Out of an abundance of caution, we delayed making this post to ensure that users had adequate time to upgrade. The bugs that allowed for this string of attacks were patched on Geyser builds numbered 897 and later. In the unlikely event you are still running an outdated build of Geyser from many months ago, you should update immediately by downloading the latest build from https://geysermc.org/download. The original security advisory for this vulnerability was published on the GeyserMC/Geyser repository. This response will detail the timeline, attack vectors, how they were patched, and additional measures we took to prevent future attacks.


