Chapter 13

Application-Layer Denial-of-Service Attacks

In computing, a distributed denial-of-service attack (DDoS attack) is considered to be one of the most difficult problems in the field of security; so far, there is no perfect solution.

In this chapter, the denial-of-service (DoS) attack in the application layer of web security is discussed, and I try and provide solutions based on my experience in the field.

13.1 Introduction to DDoS

DDoS is a method that makes a machine or a network resource unavailable to the user due to an overload of resources, for example, a 100-parking-space parking lot full of cars, where one car cannot park unless another leaves. If the parked cars stay without moving out, the entrance of the parking lot will be ...

Get Web Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.