The new incident timeline, explained (part 3)
Over the last few months we have spent a lot of time on the new incident timeline, explained. This is what we learned.Lessons for your own runbookKnow who can change DNS at…
Over the last few months we have spent a lot of time on the new incident timeline, explained. This is what we learned.Lessons for your own runbookKnow who can change DNS at…
We get asked about hTTP/2 rapid reset one year later more than almost anything else, so here is the long answer.Challenges beat blocksBlocking lists go stale within minutes when attackers rotate through…
cache-busting query flood against a online casino platform in the Middle East, peaking at 733.2 million requests per second. Mitigated in 0.105 seconds.
HTTP/2 rapid reset against a fashion retail platform in Latin America, peaking at 723.8 million requests per second. Mitigated in 0.829 seconds.
HTTP GET flood against a healthcare portal platform in Latin America, peaking at 777.4 million requests per second. Mitigated in 0.371 seconds.
Here is a question we could not answer well a year ago: what really happens with hTTP/2 rapid reset one year later? We can answer it now.Testing in production, safelyEvery rule starts…
credential stuffing against a online payments platform in the Benelux, peaking at 811.5 million requests per second. Mitigated in 0.823 seconds.
HTTP GET flood against a electronics retail platform in Latin America, peaking at 185.3 million requests per second. Mitigated in 0.256 seconds.
Over the last few months we have spent a lot of time on scraper bots are getting better at pretending to be Chrome. This is what we learned.Latency budgetOur budget for the…
TLS handshake exhaustion against a online payments platform in North America, peaking at 111.3 million requests per second. Mitigated in 0.807 seconds.
Rolled out to all points of presence on 14 May 2021. No action is required. Managed WAF: 43 new signatures […]
log streaming to your SIEM, now in near real time sounds like a narrow topic. It turns out to touch almost every part of how an edge network behaves under attack.Measuring successWe…