BLOG

Security

Postmortems, runbooks, and patterns from teams operating real production infrastructure.

All Engineering Security Operations Postmortems
Security

Cloudflare WAF rule that blocked a 1.2M-req/s scrape attempt

A single custom rule cut a botnet attack from 1.2M requests per second to under 50 RPS legitimate traffic — without a captcha challenge.

May 7, 2026 5 min read