How KestBank kept its municipal services online through election week
KestBank runs a municipal services serving customers across Western Europe. Before Deflecto, attacks meant diverting traffic to a scrubbing provider […]
KestBank runs a municipal services serving customers across Western Europe. Before Deflecto, attacks meant diverting traffic to a scrubbing provider […]
WebSocket connection flood against a education platform platform in Central Europe, peaking at 682.9 million requests per second. Mitigated in 0.427 seconds.
This post is about writing your first custom WAF rule. It started, as most of our posts do, with an incident that did not go the way we expected.Compliance is a side…
Rolled out to all points of presence on 20 February 2023. No action is required. Deprecated challenged vs. dropped traffic […]
Over the last few months we have spent a lot of time on challenge instead of block: fewer false positives, same protection. This is what we learned.The numbersAcross the last quarter, 71%…
credential stuffing against a municipal services platform in Central Europe, peaking at 704.4 million requests per second. Mitigated in 0.425 seconds.
HTTP GET flood against a education platform platform in Latin America, peaking at 741.7 million requests per second. Mitigated in 0.222 seconds.
Rolled out to all points of presence on 20 November 2022. No action is required. Faster rule propagation: median 22 […]
TLS handshake exhaustion against a tax authority portal platform in Southeast Asia, peaking at 644.0 million requests per second. Mitigated in 0.151 seconds.
Slowloris against a fashion retail platform in Western Europe, peaking at 381.4 million requests per second. Mitigated in 0.016 seconds.
carpet-bombing UDP flood against a online payments platform in the Benelux, peaking at 286.1 Gbps. Mitigated in 0.743 seconds.
HTTP GET flood against a crypto exchange platform in Western Europe, peaking at 428.1 million requests per second. Mitigated in 0.144 seconds.