Category: Attacks and Threats

DDoS attack

Distributed Denial of Service: an attempt to make a server or service unavailable by overwhelming it with traffic from many sources at once, rather than trying to break in.

Why small businesses get targeted too

DDoS attacks do not require a specific reason. Many are launched by automated botnets testing which targets go down easily, or as a distraction while a separate intrusion attempt happens elsewhere, regardless of the target's size.

What a server operator can and cannot do alone

A single server, however well configured, generally cannot absorb a large-scale volumetric attack on its own bandwidth. Mitigating a serious DDoS attempt usually requires upstream filtering from the hosting provider or a dedicated DDoS protection service in front of the server.

Frequently asked questions

Can a firewall stop a DDoS attack by itself?

Only smaller, less sophisticated attempts. Large volumetric attacks exceed what a single server's network connection can handle regardless of firewall rules, and need to be stopped further upstream.

How quickly does a DDoS attack usually start affecting a service?

It can be near-instant. Once attack traffic exceeds available bandwidth or server resources, legitimate requests start failing or timing out within seconds to minutes.

Is DDoS protection something I need even on a small VPS?

It is worth having basic protections regardless of size, since attacks are frequently untargeted and automated rather than a response to how big or well-known a business is.

Want to see where your own server stands?

Run the free, read-only server check, or open the Security Lab and watch the detect, contain, recover, verify loop in action.

Get your free server checkOpen the Security Lab