Threat Bulletin 0321: HTTP/2 rapid reset against a sports betting platform in the Middle East
HTTP/2 rapid reset against a sports betting platform in the Middle East, peaking at 464.1 million requests per second. Mitigated in 0.529 seconds.
HTTP/2 rapid reset against a sports betting platform in the Middle East, peaking at 464.1 million requests per second. Mitigated in 0.529 seconds.
Slowloris against a crypto exchange platform in the Benelux, peaking at 895.7 million requests per second. Mitigated in 0.658 seconds.
ACK flood against a news publisher platform in Southeast Asia, peaking at 247.8 Gbps. Mitigated in 0.256 seconds.
HTTP POST flood against a B2B SaaS platform in Southeast Asia, peaking at 205.1 million requests per second. Mitigated in 0.754 seconds.
HTTP GET flood against a crypto exchange platform in the Nordics, peaking at 256.8 million requests per second. Mitigated in 0.660 seconds.
TLS handshake exhaustion against a gaming community platform in Latin America, peaking at 766.4 million requests per second. Mitigated in 0.844 seconds.
We get asked about designing a risk score that analysts can explain more than almost anything else, so here is the long answer.What we changedWe moved the decision from a single threshold…
credential stuffing against a online casino platform in the Nordics, peaking at 390.8 million requests per second. Mitigated in 0.180 seconds.
search endpoint flood against a developer platform platform in the UK, peaking at 729.9 million requests per second. Mitigated in 0.444 seconds.
WebSocket connection flood against a healthcare portal platform in the Benelux, peaking at 974.8 million requests per second. Mitigated in 0.558 seconds.
Slowloris against a developer platform platform in Iberia, peaking at 898.0 million requests per second. Mitigated in 0.219 seconds.
credential stuffing against a electronics retail platform in Western Europe, peaking at 304.6 million requests per second. Mitigated in 0.441 seconds.