InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

HTTP/2 Rapid Reset DDoS Attack Campaign

Presented by

Grant Bourzikas, SVP, Chief Security Officer, Cloudflare John Engates Field, Chief Technology Officer, Cloudflare

About this talk

Cloudflare, along with Google and Amazon AWS, disclosed the existence of a novel zero-day vulnerability dubbed the “HTTP/2 Rapid Reset” attack. This attack exploits a weakness in the HTTP/2 protocol to generate enormous, hyper-volumetric Distributed Denial of Service (DDoS) attacks. Cloudflare has mitigated a barrage of these attacks in recent months, including an attack three times larger than any previous attack we’ve observed, which exceeded 201 million requests per second (rps). Since the end of August 2023, Cloudflare has mitigated more than 1,100 other attacks with over 10 million rps — and 184 attacks that were greater than our previous DDoS record of 71 million rps. Learn about the HTTP/2 Rapid Reset flaw, the ongoing DDoS attack campaign, and best practices to protect your organization with Cloudflare CSO, Grant Bourzikas, and Cloudflare Field CTO, John Engates.
Cloudflare

Cloudflare

36225 subscribers204 talks
Making the Internet Work the Way It Should for Anything Online
Cloudflare is a global network designed to make everything you connect to the Internet secure, private, fast, and reliable. We offer Application Security, CDN, DNS, DDoS Protection, SASE, Zero Trust, and Developer Services. Find out how we can help to build a better Internet.
Related topics