Comment · Thu, August 12, 2021 · ND Owner
DDOS Attack
Original post in this thread
MisterYouAreSoDumb · 137 points
Yesterday we were hit with an extremely sophisticated DDOS attack. This group of people was able to get around multiple DDOS protection systems that were in place. We were down for over for over 4 hours, and everything we did to counteract them was immediately sidestepped. We would cut off access from all IPs in the countries we were getting requests from (like Russia, China, and Brazil) and their systems would automatically shift to other countries within seconds (like Pakistan, Ukraine, Saudi Arabia, and Syria). To stop our server from being overloaded by the attack, we had to put Cloudflare bot checking in place on the site, so you may notice a Cloudflare message pop up when you try to load our site at the moment. That is a JavaScript that assesses if your traffic is legitimate, or if it is part of the attacking systems. Don't be alarmed. That is just Cloudflare's systems doing a quick check. Furthermore, we had to completely cut off access from IPs in almost every country in the world for a period. We have been slowly removing those restrictions as we are able to. However, if you get a message that you are unable to load the site, that is due to the current attack we are deali…
What they were answering
Majalisk · 4 points
Alkemist
Yeah, a moment after commenting I realized I ought to have asked how that went. Glad to hear they had backups and were able to recover.
Breach years back. Worth millions
Yeaaaahhhh, remember that. Still rough.
call with senior management
Oh, I’m sure that will be fun.
Must have been quite a significant DDOS. Of all the possible IT issues that can happen, DDOS’es are still probably the most preferred thing to happen to a business by far and can be remediated often pretty quick compared to anything else.
Still all can fall apart when someone who has been told 40 times to never click on links while on company computer/network does exactly that though, lol, no matter what you do almost.
u/MisterYouAreSoDumb · ND Owner
We have training now for all our employees about what not to click on, what signs to look for, etc. We also have significantly limited which resources people have access to on the network, so even if someone does click on something they shouldn't, their credentials shouldn't allow a hacker to have access to sensitive things. Obviously you are only as strong as your weakest link, though.