Dec 16, Update: After we publicly posted the data at the end of this post, the attackers swiftly retaliated with a 59 Gbps attack. We were able to successfully mitigate with help from Radware. We knew this was a risk of disclosure, but we stand by our decision. One month ago, we had to fight off one of the largest and most sophisticated DDoS attacks to hit Europe this year. As we detailed in our previous blog post , defending against DDoS attacks, especially highly sophisticated ones, is not easy. However, ProtonMail is now proven to be capable of providing DDoS resistant email hosting for our business and consumer users. In this post, we will share some of the lessons learned to help other companies that need DDoS protection. At the end of this post, we also provide some technical details about the attack against us, along with a partial data dump. In fact, even though we were able to mitigate the attacks since November 8th, , we been under attack repeatedly since then. While smaller than the initial attack, these subsequent attacks have still reached Gbps and as of a couple days ago, we are still being hit.
In a DDoS distributed denial-of-service attack, an attacker will send thousands of fake requests in an attempt to exceed the bandwidth, flood a server's resources, and overload the system. By doing this, valid requests can only be processed very slowly or not at all. A massive amount of compromised computers botnets are often used to create a gigantic amount of data traffic. Hetzner Online uses its automated security tools to protect your web applications, websites, servers, and IT infrastructure from this threat. Our automated system recognizes almost all attack patterns in advance, allowing it to block the attacks and effectively thwart the vast majority of them. It uses the latest hardware appliances and sophisticated perimeter security technologies, providing you with first-rate protection against large-scale DDoS attacks. And all that free of charge. In addition to recognizing an attack based on the amount of traffic or the number of packets, we at Hetzner Online will be able to clearly define the actual attack and then to specifically home in on and react to that particular type of attack.
Free website protection
By visiting and using this website you agree to the placement of cookies. Learn more. If you feel that your business requires a higher degree of protection, we offer a selection of packages that will allow you to tailor the protection precisely to the level of threat you face. Customize your set-up and get the perfect balance of protection and price. Nowadays DDoS is being used as a competitive business weapon. Those affected often suffer downtime, leading to financial loss and reputation degradation.
It provides your services with round-the-clock protection against all types of DDoS attack, without any limitations in terms of volume or duration. Measures put in place to protect your system against DDoS attacks, while letting legitimate traffic pass through. Permanently active L7 mitigation protection, exclusive to Game servers and specifically designed for certain gaming and communication protocols. A software program you can use to deploy custom rules for filtering traffic, giving you more adapted protection. An infrastructure designed and deployed by OVH for all our services, to vacuum and mitigate traffic during a DDoS attack. Anti DDoS. Keep your dedicated infrastructures protected against DDoS attacks. What is anti-DDoS protection?