Why our logs are append-only and how we query them (part 2)
why our logs are append-only and how we query them sounds like a narrow topic. It turns out to touch almost every part of how an edge network behaves under attack.Observability firstEvery…
why our logs are append-only and how we query them sounds like a narrow topic. It turns out to touch almost every part of how an edge network behaves under attack.Observability firstEvery…
Rolled out to all points of presence on 29 November 2022. No action is required. Deprecated Azure Sentinel; removal scheduled […]
Rolled out to all points of presence on 26 October 2022. No action is required. Reduced p99 filtering latency by […]
We get asked about protecting WordPress login and XML-RPC from abuse more than almost anything else, so here is the long answer.What we changedWe moved the decision from a single threshold to…
Rolled out to all points of presence on 29 September 2022. No action is required. Managed WAF: 44 new signatures […]
Rolled out to all points of presence on 21 September 2022. No action is required. Log streaming now supports Azure […]
Rolled out to all points of presence on 28 August 2022. No action is required. Managed WAF: 13 new signatures […]
Rolled out to all points of presence on 4 July 2022. No action is required. Log streaming now supports GraphQL […]
Rolled out to all points of presence on 26 April 2022. No action is required. API: new endpoint /v1/incidents/{id}/export. Faster […]
how we test WAF rules against seven days of real traffic sounds like a narrow topic. It turns out to touch almost every part of how an edge network behaves under attack.What…
This post is about hacktivist floods around elections: a field guide. It started, as most of our posts do, with an incident that did not go the way we expected.Observability firstEvery mitigation…
Rolled out to all points of presence on 29 March 2022. No action is required. Fixed a race in origin […]