Guardians of the Enterprise — Insights from leading cyber experts.

Listen Now →

Mitigating a Botnet-Driven DDoS Attack on a Fortune 500 Company

Key Challenges:

Strategy & Recommended Solution

AppTrana DDoS mitigation powered by behavioural AI capabilities and managed services, deployed default and custom policies to bring these attacks down to zero.  

URI Blacklisting Policy:

The AI engine blocked all external requests to URLs that were not meant for public access as soon as the DDoS requests/site traffic increase was witnessed. Only internal teams with specific internal IP addresses were permitted to access them. 

Rate-Limiting Rules:

Custom Rule to Allow Requests Only from Browsers

AI engine detected the headless requests. The system only granted access to the origin when the request contained the WAF cookie. 

Geo-Fencing Rules:

The AI engine automatically detected suspicious traffic from countries where the customer didn’t have any scope for business and blocked these requests. All the logs of the block requests were sent to the customer and the managed services team. 

Automatic Reduction in the Bot Tolerance Levels by the AI Engine: 

Deployed Custom Rules to Block Anonymous Proxy 

A rule was implemented by the managed services team to detect and block harmful bot requests attempting to access the blacklisted URIs. This was done by going through the notifications they received from the AI engine after analyzing the incoming traffic. 

Results:

Charts:

Log/Block chart :

Log or Block Mode

Incoming requests chart :

Incoming Requests

 

Indusface
Indusface

Indusface is a leading application security SaaS company that secures critical Web, Mobile, and API applications of 6,500+ global customers using its award-winning fully managed platform that integrates web application scanner, web application firewall, DDoS & BOT Mitigation, CDN, and threat intelligence engine.

Solution Highlights: 

  1. DDoS attacks were carried out from 8 million unique IPs for 14 days 
  2. The DDoS attack traffic went up by up to 14000X, the usual daily traffic 
  3. 100% availability ensured while saving thousands of dollars in additional bandwidth expenditure  
  4. Thousands of dollars saved in data-transfer costs as these were blocked on AppTrana 

About The Customer:

The customer is a Fortune 500 company with a presence in over 30 countries and has been running its businesses in a wide range of sectors for over 5+ decades. 
The website provides details on various commodities that could be traded in bulk on a global scale. 

 
Download Case Study

APPTRANA WAAP

Web apps, APIs, and AI systems. Protected from day one. Autonomously.

OWASP Top 10 protection from day one. Zero false positives, guaranteed. Vulnerabilities discovered and patched at the edge. Experts verify enforcement before policies go live. 24x7 managed services included.

✓ Gartner Customers' Choice 4 years running 100% customer recommendation rate

No credit card required