Defending Applications from Complex and Modern Attacks

2021-07-06 KENNETH 0

Defending Applications from Complex and Modern Attacks Your friend Jon is shopping on his favorite e‑commerce site. One day, the site is slow and unresponsive. Over the next week, each time Jon wants to search for a product, the site remains sluggish. He wonders, “Does this site want my money or not?” Eventually, he decides to stop using the site because it’s become unreliable, and goes to a competitor to make his purchase. Jon is an unusually patient shopper. Research reveals that a full third of U.S. consumers say they will abandon a brand after a single negative experience, and the percentage is even higher is other parts of the world. Beneath the surface, a likely cause for Jon’s poor user experience is a denial-of-service (DoS) attack. In a DoS attack, a bad actor bombards a site or application with [ more… ]

No Image

How NGINX App Protect Denial of Service Adapts to the Evolving Attack Landscape

2021-07-06 KENNETH 0

How NGINX App Protect Denial of Service Adapts to the Evolving Attack Landscape As we move more and more aspects of our daily lives online, cyberattackers are keeping pace in their efforts to degrade the level of service provided by the apps we rely on. Their motivations are numerous, ranging from revenge to influencing the stock price of affected companies to creating a smokescreen that distracts security teams from data breaches. In a previous blog, we describe how in the past security teams had to continually develop new defenses against volumetric denial-of-service (DoS) and distributed DoS (DDoS) attacks at the network and transport levels (Layers 3 and 4), which exhaust servers’ available bandwidth by flooding them with TCP/UDP connection requests. Now attackers have added a new tool to their arsenal – DoS and DDoS attacks that use HTTP requests or API calls [ more… ]

No Image

NGINX App Protect Denial of Service Blocks Application-Level DoS Attacks

2021-07-06 KENNETH 0

NGINX App Protect Denial of Service Blocks Application-Level DoS Attacks While digital transformation is accelerating business potential, unfortunately it’s also broadening the threat landscape. As security teams are occupied adjusting to increasing scope and responsibility, attackers are taking advantage, becoming more sophisticated than ever in the ways they abuse applications for financial gain. Compared to traditional denial-of-service (DoS) attacks at the network level, application‑level (Layer 7) DoS attacks are rising sharply, in large part because they can bypass traditional defenses that are not designed for modern application architectures. From the viewpoint of attackers, Layer 7 DoS attacks have two valuable features: they require very few resources to create significant disruption, and they are difficult to detect. Generated using sophisticated tools and precisely targeted requests, such attacks disrupt application servers and APIs by making them unable to process legitimate requests. When a server [ more… ]

No Image

Get ready for back to school with savings from Microsoft Store

2021-07-06 KENNETH 0

Get ready for back to school with savings from Microsoft Store While summer break is in full swing, back-to-school shopping is underway with a quarter of shoppers already searching for items that will prepare them for the upcoming school year. Microsoft Store is helping students and families find simple tools to use at home, in the classroom, or on the go. Starting July 6, Microsoft Store is introducing a range of offers on laptops, PCs and accessories. Microsoft Store’s back-to-school deals and savings include: Save $100 on Surface Go 2 You can get Microsoft’s smallest, lightest 2-in-1 laptop for $100 off. The Surface Go 2 is perfectly portable with tablet-to-laptop versatility, making it a must have for whatever the school year has in store. Save up to $300 on Surface Pro X The ultra-thin Surface Pro X is available at [ more… ]

No Image

WP Briefing: Episode 12: WordPress – In Person!

2021-07-05 KENNETH 0

WP Briefing: Episode 12: WordPress – In Person! In this episode, Josepha Haden Chomphosy talks about WordPress – In Person! The WordPress events that provide the dark matter of connection that helps sustain the open source project. Have a question you’d like answered? You can submit them to [email protected], either written or as a voice recording. Credits Editor: Dustin Hartzler Logo: Beatriz Fialho Production: Chloé Bringmann Song: Fearless First by Kevin MacLeod References The tragedy of the commons WordPress 5.8 Release Candidate announcement Transcript Josepha Haden Chomphosy  00:11 Hello, everyone, and welcome to the WordPress Briefing, the podcast where you can catch quick explanations of the ideas behind the WordPress open source project, some insight into the community that supports it, and get a small list of big things coming up in the next two weeks. I’m your host, Josepha [ more… ]