Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Contact Us
  • Login
I.

I. Solomon

[email protected]

4

Article
Last Month

0.0%

I. articles

All Categories
  • All Categories
  • White Papers
  • Articles
  • DDoS Attack Vectors
  • DDoS Attack Groups
  • AI - DDoS

Red-Button-DDoS-Threat-Pulse-July-2026

Published August 18th, 2026 by I. Solomon

Learn About the Latest DDoS Threats Stay ahead of the evolving DDoS threat landscape with our monthly DDoS Pulse reports. In this month’s edition you’ll learn A newly disclosed vulnerability that lets a single machine - no botnet required - take a major website offline in seconds ● A World Cup-timed flash DDoS attack against a European betting platf

1 min

DDoS Test Kickoff: Information We Need From You

Published August 3rd, 2026 by I. Solomon

To make the kickoff call as efficient as possible, please have the following ready beforehand. 1. Assets & Network Design In-scope IPs/CIDRs, hostnames, and FQDNs (plus anything explicitly out of scope). Basic network diagram: how traffic reaches the asset (edge, firewall, load balancer, origin). ASN/upstream provider, and whether cloud, on-prem

14 Views 1 min

Red-Button-DDoS-Threat-Pulse-June-2026

Published August 18th, 2026 by I. Solomon

Learn About the Latest DDoS Threats Stay ahead of the evolving DDoS threat landscape with our monthly DDoS Pulse reports. In this month’s edition you’ll learn why carpet-bombing attacks are becoming a mainstream tactic, how increasingly sophisticated multi-vector campaigns are targeting hosting providers and shared infrastructure, and why third-part

1 min

JA3/JA4 Fingerprints

Published March 5th, 2025 by I. Solomon

Overview JA3 and JA4 are cryptographic fingerprinting techniques used to identify and analyze Transport Layer Security (TLS) client and server communications. These fingerprints help security teams detect malicious activities, including botnets, malware, and evasive threats that disguise themselves in encrypted traffic. What is JA3? JA3 is a method

7196 Views 1 min

Why Your Rate Limits Fail Under Distributed DDoS Attacks

Published May 28th, 2026 by I. Solomon

There is often a significant gap between what security teams believe their DDoS protections are doing and how those protections behave during a real attack. Rate limiting is one of the most widely deployed application-layer DDoS defense mechanisms, yet it is also one of the most misunderstood. Many organizations configure rate limit rules and assume

290 Views 3 min

DDoS Testing - Production VS Staging

Published May 5th, 2026 by I. Solomon

Executive Summary Introduction This document addresses whether a DDoS simulation should be conducted against a production environment or a staging environment, when both are available. It sets out the gains from testing production, the operational risks and difficulties associated  and identifieswith it, and the controls applied during the engagemen

301 Views 3 min

HTTP/2 Bomb: A New Denial-of-Service Technique Targeting Web Servers

Published June 7th, 2026 by I. Solomon

A newly discovered denial-of-service (DoS) technique dubbed HTTP/2 Bomb has drawn significant attention across the security industry due to its ability to exhaust server memory and render web services unavailable within seconds. The attack was publicly disclosed in June 2026 by California-based security research company Calif. According to the resea

240 Views 3 min

AWS Testing Approval Requirements

Published July 16th, 2026 by I. Solomon

Summary Whether AWS Shield Advanced (and AWS approval) is required for a test depends on which layer of the environment is being targeted and whether a third-party vendor sits in front of AWS. Rule To conduct a test directly against an AWS environment without prior AWS approval, the customer must have AWS Shield Advanced in place. If the AWS environ

69 Views 1 min

Understanding DDoS Attack Vectors

Published February 11th, 2025 by I. Solomon

Volumetric attacks - Test your ability to withstand extreme and sustained attacks. Includes UDP floods and ICMP floods. The attack’s goal is to saturate the bandwidth of the attacked site, and magnitude is measured in bits per second (Bps). Application-layer attacks     Send excessive HTTP/S GET or POST requests to test your resistance to resource e

1589 Views 1 min

Basic Rate Limit Configuration for DDoS Protection

Published February 19th, 2025 by I. Solomon

What Are Rate Limits? Rate limit rules are essential for protecting against Distributed denial-of-service (DDoS) attacks by controlling the rate of incoming traffic to critical resources. By distinguishing between legitimate and malicious traffic, these rules help prevent service disruption and resource exhaustion. Proper configuration and calibrati

2268 Views 1 min

Web Challenges Procedure for DDoS Mitigation

Published February 19th, 2025 by I. Solomon

Web challenges or web-based verification methods are crucial in differentiating between human users and automated bots, particularly effective against layer 7 DDoS attacks involving numerous HTTP requests. Here are the common types of web challenges: JavaScript: This challenge identifies legitimate browsers that support JavaScript, which most bots c

1436 Views 1 min

Common DDoS Attack Vectors

Published February 12th, 2025 by I. Solomon

DDoS attack vectors are methods used by attackers to overwhelm a target system, network, or service with excessive traffic, causing disruption or denial of access to legitimate users. These vectors often involve sending malformed data or exploiting protocol vulnerabilities to exhaust resources. The list below highlights some of the more common attac

1863 Views 3 min
Load More

Member of Groups

Red Button Internal
[email protected]

Services

  • DDoS Testing
  • DDoS 360
  • Technology Hardening
  • DDOS Training
  • Incident Response

Resources

  • Resource Library
  • DDoS Resiliency Score (DRS)
  • DDoS Glossary
  • DDoS Day Conferences

Company

  • About Us
  • Careers
  • Contact
Red Button Inc. All rights reserved
  • Privacy policy
  • Site Terms
Expand