Skip to main content

Overview

Network Distributed Denial of Service (DDoS) attacks aim to overwhelm a network with excessive traffic, causing disruption to legitimate users. Traffic is analysed at our Threat Protection Centers (TPCs) to detect and protect against layer 3 and layer 4 DDoS attacks. Each incoming packet is matched against our Threat Intelligence feed, along with a set of static and dynamic rules. Malicious traffic is identified and blocked in real time.

Our threat intelligence constitutes nine different feeds:

  • Amplification Sources
  • Anonymous Proxies
  • Web Application Sources
  • Port Scanners
  • Spammers
  • Malware Uploaders
  • Credential Stuffing Sources
  • Network DDoS Sources
  • Rate Limiting Sources

Intel is collected from our vast network of sensors and scanners. IP addresses consistently exhibiting malicious behaviour are also added to the threat feed.