Two more examples of application layer attacks on our customers

Last month, we showed you in the article “DDoS extortion cases on the application layer are starting to appear ” how the extortion and subsequent DDoS attack on a customer’s website takes place. We know that these cases are gradually increasing, but the pace is accelerating unpleasantly. In addition, we can see from the analysis of logs that attackers are trying to mask their attacks better, trying new methods and looking for the limits of protection.

Continue reading “Two more examples of application layer attacks on our customers”

Cases of application layer DDoS extortion are beginning to emerge

Extortion by DDoS attack is nothing new. Large botnets can carry out a fairly powerful attack nowadays, which can easily clog several 100 Gbps routes(we have already seen this happen). Fortunately, they are relatively rare because they are expensive. Medium attacks (above 10 Gbps) are encountered more frequently (even several times a month). And smaller ones (under 10 Gbps) are almost a daily occurrence. However, this classical kind of brute force attack (in terms of data volume or packet count) is relatively well detected and filtered. It is worse with application layer attacks, such as those that try to pass themselves off as normal traffic.

Continue reading “Cases of application layer DDoS extortion are beginning to emerge”

How the strongest DDoS attack in the Czech Republic took place

Since the early morning hours of Monday 05.04.2021, our website and our infrastructure have been the target of very strong DDoS attacks, so strong that it is probably the strongest DDoS attack in the Czech Republic to date. We have prepared technical background and charts for this attack. This is just to let you know what can commonly happen on the Czech Internet.

Continue reading “How the strongest DDoS attack in the Czech Republic took place”

The number of blocked traffic exceeded 60% or how we have made progress in protecting your websites

It’s been about four and a half years since we started filtering traffic for web hosts with our IPS/IDS protection. Advanced threat detection and elimination system. The original filtering rules can no longer be compared to today’s. They are far more benevolent, yet more effective than ever before.

Continue reading “The number of blocked traffic exceeded 60% or how we have made progress in protecting your websites”

How we “slept through” the most powerful DDoS attack ever launched against us and nobody noticed

Just a week ago, I bragged on social media how we were hit by another major DDoS attack after a long time (traffic was up to 32 Gbps with 5-minute averages). Well, we almost missed the record holder. Or rather, they overslept because we didn’t even notice.

Continue reading “How we “slept through” the most powerful DDoS attack ever launched against us and nobody noticed”

How we protect our customers’ websites from backdoors and other malicious files

Two weeks ago, rather for the sake of interest, we published a detective story How we protected our customers’ websites from a critical bug in the WordPress plugin ThemeGrill Demo Importer. We didn’t expect it to generate such a response and get so many inquiries. That’s why we decided to write another example of the work of our security team.

Continue reading “How we protect our customers’ websites from backdoors and other malicious files”

How we protected our customers’ sites from a critical bug in the ThemeGrill Demo Importer WordPress plugin

On Monday 17.02.2020, thousands of our customers’ websites faced a massive security vulnerability that could have completely wiped out their websites in a split second.

Or one detective story from behind the scenes of WEDOS. No censorship.

Continue reading “How we protected our customers’ sites from a critical bug in the ThemeGrill Demo Importer WordPress plugin”