Get the latest tech news

288,493 Requests – How I Spotted an XML-RPC Brute Force from a Weird Cache Ratio


A 0.8% Cloudflare cache ratio led me to a single Singapore IP flooding a WordPress site with 288k xmlrpc.php requests. Detection, vector, and two-layer mitigation.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of requests

requests

Photo of RPC

RPC

Photo of brute force

brute force

Related news:

News photo

Russia's Telegram crackdown hits record high, with 95% of requests failing

News photo

Queueing Requests Queues Your Capacity Problems, Too

News photo

We intercepted the White House app's network traffic