- Joined
- May 5, 2022
Not entirely on point but apparently they're DDOSing paradise (archive), others hit include Monke, Goon, et al. The host of Paradise (AA or Affected Arc plebbit link) posted this in the comment section:I actually have a question for the more technically inclined though. I'm guessing that the reason byond.com is down despite cloudflare is because it's hosted on the same equipment as the hub. Would that assumption be correct?

Probably easiest mitigation would be some sort of kiwiflare and check for valid BYOND packet flow... But if it's large enough he's going have to resort to IP-range bans (assuming his server hosts didnt just blackhole him all ready and route all the requests to null)Man I am trying. This aint an easy attack to deal with, everything else in the past has been elaborate, this is just SYN flooding which has led me to deploying full on IDS & IPS shit to try and compensate for.
For those unaware [nerds "uhm akshually" me if I am wrong], SYN is the first packet sent in a TCP sequence, so you cant really block it because otherwise no one can connect. As for why this is an issue, imagine youre in a room with 100,000 people who are all screaming hello at the person you want to speak to. Theyre obviously going to have a breakdown.
Now replace the person with a server and you see how this becomes a hassle quickly.
This attack will hurt for a bit, but the attacker will either get bored, or ill just throw far too much hardware at the problem at usual. We will see.
Last edited: