Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

As discussed in the article, threat actors are using a botnet to game the system by repeatedly issuing queries for the domains; the list is intended to represent the top 100 domains resolved by legitimate users (and legitimate bots, I assume), not just "who can make the most queries to CloudFlare for a domain".


So why not get rid of "gamed" requests? Why would gaming it be fine as long as your domain isn't malware related?


Why not just disqualify these obviously not in the top 100 domains that are cheating and also host malicious content which has the same effect...??




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: