When the bots came for us, we strengthened our defenses. Here's what we learned about parrying a few DDoS attacks.
wono
|
|
wono
> Rate-limit all API calls. This goes hand-in-hand with minimizing data per call; to get large amounts of data, the attacker will need to call the API multiple times. Nobody needs to call your API a hundred times per second.
Do you want to delete?