It could be a continuation of the previous attack, but more likely the after-effect of IB implementing a new firewall, which was done last weekend in response to the original problem.
Some tuning / adjusting to work with load balancers and multiple web-servers may be going on.
But I'm actually just as much in the dark as everyone else, as there hasn't been an announcement from IB yet.
SD