Doesn't using your botnet expose your botnet IP addresses/devices?
The hard part (and it truly is hard!) is convincing a few companies to do this. It risks user complaints in the short term, to solve a problem that may not be very acute for the largest companies (who can simply absorb these attacks).
(No I don’t expect any response but I am just leaving this thought for those who stumble on this thread in the future).
ISPs do this literally all the time. They sell services that do this.
Also, sounds illegal.
not necessarily true
Shout out to Dutch ISP XS4ALL who was (is?) very very strict and active in this space.