HomeIntelligenceBrief
BREACH BRIEF🟠 High ThreatIntel

DDoS Attack Delays Payments to Sellers on Russia’s Wildberries Marketplace

Wildberries confirmed a DDoS attack that throttled its payment‑tracking systems, leaving billions of rubles in seller payouts delayed. The event underscores the importance of documented availability controls and incident‑response evidence for audit readiness.

LiveThreat™ Intelligence · 📅 September 10, 2026· 📰 therecord.media
🟠
Severity
High
TI
Type
ThreatIntel
🎯
Confidence
High
🏢
Affected
3 sector(s)
Actions
3 recommended
📰
Source
therecord.media

DDoS Attack Delays Payments to Sellers on Russia’s Wildberries Marketplace

What Happened – Wildberries, Russia’s largest e‑commerce platform, confirmed that a distributed denial‑of‑service (DDoS) attack targeted the systems used to track and withdraw earnings for marketplace sellers. The surge in traffic forced the company’s security controls to throttle payment processing, leaving billions of rubles in seller payouts delayed.

Why It Matters for Trust & Control Assurance

  • The incident illustrates the need for continuous monitoring of availability controls and documented incident‑response procedures that can be presented as audit evidence.
  • Demonstrating that technical safeguards can be temporarily tightened without compromising fund safety aligns with control objectives around resilience and recovery.
  • Mapping the DDoS mitigation response to a single control objective provides a defensible posture across multiple frameworks (e.g., NIST CSF, ISO 27001).

Who Is Affected – Large online marketplaces, payment processors, and third‑party sellers that rely on real‑time settlement services.

Recommended Actions – Review and harden DDoS mitigation controls; test incident‑response playbooks for payment‑system disruptions; collect and retain evidence of mitigation steps to satisfy control‑assurance requirements. Source: The Record

Technical Notes – The attack was a volumetric DDoS that overwhelmed the payment‑tracking subsystem; no vulnerability (CVE) was disclosed, and attribution remains unconfirmed. Source: The Record

📰 Original Source
https://therecord.media/russian-e-commerce-giant-wildberries-says-payments-disrupted

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

From the Verisq platform · Trust Operations

Every gap like this maps to a control you can evidence.

The Verisq AI Trust Operations platform maps incidents to your control framework and collects the evidence continuously — so your Trust Center shows proof, not promises, when a buyer or auditor asks.

Explore the Verisq AI Trust Operations platform →