https://blog.cloudflare.com/quantifying-the-impact-of-cloudb...
"We have the logs of 1% of all requests going through Cloudflare from 8 February 2017 up to 18 February 2017 (when the vulnerability was patched)...Requests prior to 8 February 2017 had already been deleted."
One of the most interesting things we had was the core dumps. Randomnly (depending on memory state) we'd crash rather than dump out memory in the HTTP response. We had all that data going back over the entire period. That gave us a lot of confidence this hadn't been exploited because we could see the rate of crashes plus we could see the actual core dumps to see the memory state when the crash happened.
That leaves whatever the scale of passively trolling, say, Google's cache might have been. Unknown, but probably not huge.
Starts at 25:30 for anyone curious.
> We were recording the core dumps [...] We didn't look at this
Starts at 25:30 for anyone curious.
> We were recording the core dumps [...] We didn't look at this