Residents of Eagle Mountain, Utah went days with patchy or no home internet after a cyberattack hit network infrastructure that their local provider, Direct Communications, depends on. FOX 13 News reported on 21 September that the company traced the disruption to one of its upstream providers rather than to its own network directly, and service continued to fail and recover intermittently over the following days [2].
Background
Direct Communications is a small telecommunications company serving Eagle Mountain and nearby parts of Utah County. Like many regional internet providers, it buys upstream bandwidth from larger networks rather than operating every layer of infrastructure itself, so an attack several steps removed from a household’s own connection can still take that household offline. A distributed denial-of-service, or DDoS, attack floods a target with traffic from many sources at once until legitimate traffic can no longer get through; it is a common way to disrupt a connection without compromising any device on the customer’s end.
Findings
Direct Communications told customers the outages began with unusually heavy traffic hitting the providers that carry its internet connection further upstream, a pattern Hoodline described, citing KUTV and ABC4, as typical of a distributed denial-of-service attack. The flood caused slow speeds, packet loss and, for some households, a complete loss of service. The company’s own office phones went down too, and Eagle Mountain’s City Hall was affected for a time, though city officials told FOX 13 News that operations had resumed by Monday morning [1].
Service came back and dropped out again over several days: an upstream fix restored stability at one point, then the network failed again the following night. Direct Communications posted on Facebook that internet availability was restored as of Monday afternoon, warned that some customers might still see lingering slow speeds, and said it was continuing to work with outside cybersecurity specialists to determine what happened, KUTV reported on 22 September.
It’s really hard to sell digital things when I can’t get onto a digital device.
Jessica Newman, Eagle Mountain resident and Etsy shop owner, quoted by FOX 13 News
Newman told FOX 13 News she kept her business running by switching between family members’ phone hotspots to find a signal, and considered driving to her parents’ house in a nearby town just to fill orders [1].
Implications for households
The direct impact is limited to Direct Communications customers in Eagle Mountain. The pattern generalises to any household whose internet comes from a single small or regional provider: when that provider or a network it depends on is disrupted, there is no second connection unless one was already arranged. Remote work, a home-based shop, school assignments, smart locks, security cameras and a landline routed over the same connection can all stop at once.
Recommendations
- Learn how to tether a phone to a laptop as a backup connection, and check the mobile plan’s data allowance before an outage happens, not during one.
- Keep offline copies of documents likely to be needed with no internet: a PDF of key records, a downloaded map, contact numbers saved locally rather than only in a cloud chat app.
- Ask a provider or device manufacturer what happens, during an outage, to a landline phone or a medical or safety device that relies on the same internet connection.
- Restart the router (unplug it, wait about 30 seconds, plug it back in) once service returns, as Direct Communications advised its own customers; a router that was factory-reset during the outage will need Wi-Fi set up on it again.
- Change the router’s admin password from its default if that has never been done, and check for a firmware update once service is back.
- Bookmark the provider’s status page or social media account, so updates during the next outage come from the provider rather than from rumour.
Relevance to FireAI
FireAI runs on a Mac, not on an internet provider’s network. It cannot stop a denial-of-service attack against an ISP’s upstream provider, and it cannot restore a connection; that work is entirely the provider’s.
What it can do is address the part that happens on a Mac once a household is back online, or relying on a different network for a few days. Coffee shop security mode blocks incoming connections and file or screen sharing from other devices on a network a user does not fully trust. Wi-Fi profiles can be set up once, so a Mac switches to a stricter mode automatically whenever it joins a network other than the home one. After a router has been reset or reconfigured, per-app rules and the world map let a user check that nothing on the Mac started communicating with an unfamiliar destination.
None of that replaces a second connection or a household backup plan. It keeps the Mac on a defined footing while the rest of the household arranges a workaround. FireAI is made by HisnLabs.
Limitations
None of the three sources name who was behind the attack, why Direct Communications’ upstream provider was targeted, or whether other regional providers were affected by the same infrastructure. As of the last report, the outside cybersecurity specialists’ findings had not been published, so the cause is attributed to a traffic pattern typical of a DDoS attack rather than to a confirmed, named type of attack.
Try FireAI, by HisnLabs free for 17 days.