Neil Craig<p>I've been working on an automated triager for the frequent volumetric DDOS we see against www.bbc.com & www.bbc.co.uk.</p><p>The idea is to use our edge access logs (stored in BigQuery) to isolate & describe the attack traffic then recommend any additional mitigations/filters etc. It also gives us a database of DDOS metrics/sources we can reference.</p><p>Obviously I had to add the obligatory pew-pew map.</p><p><a href="https://mastodon.social/tags/WebStats" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebStats</span></a> <a href="https://mastodon.social/tags/InfosSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfosSec</span></a> <a href="https://mastodon.social/tags/DDOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DDOS</span></a> <a href="https://mastodon.social/tags/BBC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BBC</span></a></p>