Between August 20–21, 2026, a cybersecurity professional posted a thread on Mastodon describing years of DDoS penetration testing. Key findings: most defenses target HTTP/1.1, application-layer attacks have HTTP/2 equivalents, vendors detect attacker IPs within minutes, and no vendor provides comparable metrics.
18 reportsother
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
במשך כמה שנים ניהלתי בדיקות DDoS. בדקנו סביבות שונות של יצרני הגנות, ועזרתי לחברות להקשיח את תצורת ההגנה והארכיטקטורה שלהן. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon
For a few years I ran DDoS tests. Different vendor environments, different architectures. I would help companies understand their attack surface and tune their defenses. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon
Every major application-layer attack class has an HTTP version equivalent. Most defenses are written for HTTP/1.1. The gap is not theoretical. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon
A scrubbing center is not a guarantee. It's a routing decision, and most CISOs blur three different things into one. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon
We use Claude Haiku at four specific points across our six-stage recon pipeline. Not for marketing. For accuracy. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon
Every vendor has a different way to tell you you're "protected." None of them give you a number you can compare across vendors, track over time, or use to justify budget. # cybersecurity # ddos # infosec ddactic.net?ref=mastodon