Rolled out to all points of presence on 27 March 2024. No action is required.
- Proof-of-work challenge payload reduced by 27%.
- Security: updated TLS library to address GraphQL depth limits.
- Improved fingerprint consistency scoring for Azure Sentinel clients.
- Fixed a race in origin health checks that could mark a healthy origin as down for up to 3 seconds.
Great write-up. We saw almost the same pattern on our login endpoint last month.
Good question. We will cover that in a follow-up post.
Thanks — sharing this with our on-call team.
The point about origin IPs leaking through certificate transparency logs is underrated.
How do you avoid challenging uptime monitors and partners?
Interesting that most attacks are under ten minutes. Our experience is similar.
Machine-readable ranges are at /ips.json and via the API.
Thanks — sharing this with our on-call team.
Would love a follow-up on how you handle HTTP/3 fingerprinting.
Could you share the dataset behind the percentages?
Is the risk score exposed in the logs so we can build our own dashboards on it?