So as far the DOS attack was very successful. It took down the site which it intended to and take down the network with lots and lots of the sites.
Hope lessons are learnt and your next generation is less prone to these attacks
Hope lessons are learnt and your next generation is less prone to these attacks
Wonder if Cloudflare need to do some tests along the lines of:
A) List up all the types of rules we usually use to mitigate these situations. B) Run those rules on a test router with wildly unusual input values, as was the case in this situation. C) Send test traffic using that wildly unexpected input to see what happens.
Basically a bit of manual fuzzing
Time-consuming and maybe not worthwhile, but it could save against another full system death.