Smart Rate Limiting: the Fail-safe Your Bot Vendor Cannot Build for You
Your bot management platform will miss an attack eventually. This is the design we use for the thirty minutes between the miss and the fix: a forecast-driven, multi-dimensional rate limiter that runs inside your own stack, on libraries you already know.
01. Where the vendor stops and you start
The call comes in at 01:12. Origin CPU is pinned, checkout latency is in the seconds, and the bot management dashboard you spent eleven months procuring is a wall of green. Nothing is being challenged, because as far as the vendor's models are concerned nothing unusual is happening.
This is not a vendor failure story. Commercial bot platforms are good, and the ones we have used are better than anything a five-person security team is going to write. The problem is structural, and it comes down to three things that are true no matter whose logo is on the invoice.
Detection...
Copyright of this story solely belongs to hackernoon.com. To see the full text click HERE