TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Cloudflare auto-mitigated world record 3.8 Tbps DDoS attack

49 点作者 beefman8 个月前

4 条评论

walth8 个月前
Meanwhile, it’s going on two weeks that a large volumetric amplification attack has been coming from CF itself against systems I manage.<p>Ironically, their abuse report does validate the domain being used to route traffic is a registered customer domain. But the abuse report and even Slack pings have yet to affect the traffic. It’s incredibly frustrating because you’d expect a company like Cloudflare, which positions itself as a defender against DDoS and similar threats, to take action much more quickly when they’re part of the problem.
theideaofcoffee8 个月前
Enh. I try to be positive in my comments as much as I can. Whenever the subject of DDoS mitigation by cloudflare comes up, and it seems like they&#x27;re always tooting their own horn, I struggle to be impressed. By their own info, they have approximately 330 global locations [0]. 3800Gbps divided roughly (remember, anycast, and if their upstreams are well mixed, they&#x27;re going to see pretty consistent splitting) equally across 330 locations is &#x27;only&#x27; ~11.5 Gbps each location. I&#x27;m guessing within each PoP is more than a handful of machines dedicated to DDoS mitigation. So sure, they&#x27;re doing computation on each bit of all of that, but it still doesn&#x27;t seem all that significant. Toss half a cabinet at mitigation and continue on with your day. These capabilities are available at such commodity prices nowadays it&#x27;s hardly worth the effort of a full page blog post.<p>And ok, I&#x27;ll give some leeway in those numbers looking at the map on the linked page, 35% or so of source traffic is clustered over five countries so that distribution skews and some pops around those source countries are going to be hit harder than others. Still, maybe add an order of magnitude and I&#x27;ll be a little less dismissive.<p>[0] <a href="https:&#x2F;&#x2F;www.cloudflare.com&#x2F;network&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.cloudflare.com&#x2F;network&#x2F;</a>
评论 #41736113 未加载
评论 #41735290 未加载
psd18 个月前
I worry that CF has perverse incentives
评论 #41745841 未加载
cedws8 个月前
65 second attack? Very suspicious. This attack must have had some very specific goal.
评论 #41733838 未加载
评论 #41733765 未加载