you are viewing a single comment's thread.

view the rest of the comments →

[–]Invicta 3 insightful - 1 fun3 insightful - 0 fun4 insightful - 1 fun -  (1 child)

Question: Could this be an attempt by DDoS defense companies to force you to use their services? And if so, would that allow these services to associate IP and MAC addresses with your users?

ie, could the DDoS attack ultimately be part of an intelligence-gathering op?

[–]magnora7[S] 6 insightful - 1 fun6 insightful - 0 fun7 insightful - 1 fun -  (0 children)

Our services didn't change, we're already on cloudflare. And I don't think MAC addresses are available to cloudflare, only IP addresses.

It's possible cloudflare has been gathering everyone's IP that goes to this website, but that's true of any firewall/DDOS protection service, and true for every website they protect.

It's not an ideal situation, but it's better than the website going down for hours at a time. I have heard discussions of cloudflare being a data-gathering front and the normalization of DDOS attacks being a way to ensure people go on cloudflare. But also more alternatives to cloudflare are developing as this issue becomes more prevalent.