HTTP/2 Bomb: A New Denial-of-Service Technique Targeting Web Servers

| | Blog, DDoS attacks
A newly discovered denial-of-service (DoS) technique dubbed HTTP/2 Bomb has drawn significant attention across the security industry due to its ability to exhaust server memory and render web services unavailable within seconds ...

What To Do When You’re Under a DDoS Attack

DDoS protection gaps usually become visible when there is the least room to investigate them: during an active attack. Traffic volumes rise, services begin to degrade, and the response team has to ...

Why Your Rate Limits Fail Under Distributed DDoS Attacks

There is often a significant gap between what security teams believe their DDoS protections are doing and how those protections behave during a real attack. Rate limiting is one of the most ...

DDoS Attack Types Explained: Volumetric, Protocol, and Application Layer Attacks

| | Blog, DDoS attacks
Key Takeaways There are three main DDoS attack categories:  Volumetric (Layer 3), Protocol (Layer 4), and application layer (Layer 7) – each with different attack characteristics Each category requires a different mitigation ...
Digital Outposts: Evaluating the Role of DDoS Attacks in US-Iran Conflict

Digital Outposts: Evaluating the Role of DDoS Attacks in US-Iran Conflict

Background According to the monitoring data from NSFOCUS Fuying Lab, since the outbreak of domestic conflict in Iran in January 2026 and the subsequent escalation of tensions over the nuclear issue between ...
Digital Outposts: Evaluating the Role of DDoS Attacks in US-Iran Conflict

Digital Outposts: Evaluating the Role of DDoS Attacks in US-Iran Conflict

Background According to the monitoring data from NSFOCUS Fuying Lab, since the outbreak of domestic conflict in Iran in January 2026 and the subsequent escalation of tensions over the nuclear issue between ...

The Rise of Precision Botnets in DDoS

| | Blog, DDoS attacks
For a long time, DDoS attacks were easy to recognize. They were loud, messy, and built on raw throughput. Attackers controlled massive botnets and flooded targets until bandwidth or infrastructure collapsed. It ...

Cloudflare Outage: Should You Go Multi-CDN?

As a DDoS testing and resilience consultancy, we routinely advise our clients to strengthen their architecture by using a reputable CDN like Cloudflare. After this week’s Cloudflare outage, however, many organizations are ...
NSFOCUS Cloud DDoS Protection Service (Cloud DPS) Detected and Mitigated an 800G+ DDoS Attack towards a Critical Infrastructure Operator

NSFOCUS Cloud DDoS Protection Service (Cloud DPS) Detected and Mitigated an 800G+ DDoS Attack towards a Critical Infrastructure Operator

Incident Summary On October 21, 2025, NSFOCUS Cloud DDoS Protection Service (Cloud DPS) detected and mitigated an 800G+ DDoS attack towards a critical infrastructure operator. The target network sustained a multi-vector volumetric ...