Guardians of the Enterprise — Insights from leading cyber experts.

Listen Now →

Addressing the DDoS Challenges of an Online Shopping Application

Indusface AppTrana provides DDoS Protection for the Online Shopping Application – ShopClues

The Business

ShopClues is an Indian-based E-commerce platform that brings the sellers and buyers onto a managed platform to sell and buy online items such as electronics, home and kitchen accessories, fashion, footwear, and refurbished items.

Around 70% of their business is generated from the Tier-II and Tier-III cities of India. The business is spread across 30,000 cities in India. Approximately, there are 100 million monthly visitors online on their web application.

Being an E-commerce platform, their web application was always targeted by malicious hackers especially with the volumetric DDoS attacks, and hence, securing their digital asset was a priority. Here, ShopClues was looking for a robust managed Web Application Firewall (WAF) service that is managed by security experts to secure and expand their digital business.

Challenges Before Indusface:

Strategy & Recommended Solutions by Indusface:

As the first layer of defence against such volumetric DDOS attacks, we have built a robust and highly scalable WAF (Web Application Firewall) infrastructure that scales seamlessly under high load. The edge points in these nodes protect against all the types of Layer-3, 4 attacks and ensure they do not cause any availability issues.

As the WAF’s frontend is CDN, an additional layer of protection against Layer-3, 4 DDoS attacks is provided by the CDN infrastructure and WAF focuses on the Layer-7 DDoS protection.

As a resolution strategy, we applied multi-layered security. We implemented WAF protection for both the digital assets – web portal and API. Here are the steps in detail:

Results:

In addition to the default WAF policies, Indusface Apptrana (managed WAF) enabled the application-specific custom WAF policies to accurately detect and prevent volumetric DDoS attacks. The entire management, analysis, and strategic implementation of the custom WAF policies were done by our Managed security service team.

The multi-layered security approach helped us to prevent volumetric DDoS attacks. ShopClues’s digital assets started functioning at optimum level and no downtime instances were observed further. They were now able to concentrate on their business while Apptrana managed WAF continued to detect and block the malicious attempts.

Indusface
Indusface

Indusface is a leading application security SaaS company that secures critical Web, Mobile, and API applications of 6,500+ global customers using its award-winning fully managed platform that integrates web application scanner, web application firewall, DDoS & BOT Mitigation, CDN, and threat intelligence engine.

Solution Highlights: 

  • 2.9M+ API attack requests blocked in 30 days
  • 6M+ Web attack requests blocked in 30 days
  • 720K+ attacks blocked by our custom rate-limiting policies.
About the Company

ShopClues is India’s first and the largest managed marketplace, clocking more than 100 million monthly online shopping visitors on its website. Founded in July 2011 in Silicon Valley with 5cr listed products and over 500000 + merchants.

Download Case Study

APPTRANA WAAP

Web apps, APIs, and AI systems. Protected from day one. Autonomously.

OWASP Top 10 protection from day one. Zero false positives, guaranteed. Vulnerabilities discovered and patched at the edge. Experts verify enforcement before policies go live. 24x7 managed services included.

✓ Gartner Customers' Choice 4 years running 100% customer recommendation rate

No credit card required