A major outage at Cloudflare led to widespread internet disruptions, impacting numerous high-profile services including X (formerly Twitter), ChatGPT, Spotify, League of Legends, and Downdetector. Users around the world reported being unable to access these platforms, with outage tracking sites themselves also affected due to their reliance on Cloudflare's infrastructure. Cloudflare confirmed the issue as a global network problem and stated that they were actively investigating and working to restore services, though no immediate resolution timeline was provided.
The outage was notable for its global reach and the number of critical internet services affected, highlighting the central role Cloudflare plays in web infrastructure. The incident drew comparisons to previous large-scale outages involving Cloudflare and other cloud service providers, raising concerns about the resilience of the internet's backbone services. As of the latest updates, Cloudflare teams continued efforts to remediate the issue and restore normal operations for all impacted customers.

See attribution, scope, and your downstream exposure.
6 events from the most recent confirmed update back to the earliest known activity.
Follow-up reporting on 2025-11-19 and 2025-11-20 said the outage was traced to an automatically generated configuration file or related internal database process used for security management, which triggered the failure. The disclosures provided more technical detail on how an internal systems error cascaded into a global service disruption.
After service restoration, Cloudflare said it would conduct a thorough investigation and improve safeguards to prevent similar incidents. Coverage also noted the event's broader implications for resilience planning and dependence on centralized cloud and CDN providers.
By 2025-11-19, Cloudflare and subsequent reporting said there was no evidence of malicious activity behind the outage. The company attributed the disruption to an internal technical failure, variously described as a configuration error, software crash, or database-related issue.
Roughly three hours into the outage on 2025-11-18, Cloudflare implemented a fix and most impacted services were largely restored by about 10:00 a.m. ET. Some residual issues persisted as internet services gradually recovered.
As the outage spread on 2025-11-18, Cloudflare acknowledged a global network issue and began investigating. Reporting indicated the disruption also affected Cloudflare's own dashboard and API, underscoring the breadth of the incident.
On 2025-11-18, Cloudflare suffered a major global network outage that began around 11:48 UTC / before 7:00 a.m. ET, causing widespread 500 errors and knocking many services offline. Affected platforms reported to include X, ChatGPT, Spotify, Discord, Shopify, Coinbase, Canva, Grindr, and other major websites and apps.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
17 references tracked. Mallory keeps watching after this page renders.
darkreading.com
Open sourcegovinfosecurity.com
Open sourcekrebsonsecurity.com
Open sourcedarkreading.com
Open sourcebleepingcomputer.com
Open sourcesecurityonline.info
Open sourcehelpnetsecurity.com
Open sourcescworld.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.