zlacker

[parent] [thread] 1 comments
1. kevinc+(OP)[view] [source] 2024-03-23 15:56:20
How do you handle credential stuffing? Attackers will use a huge number of regular residential IPs or VPNs that you would expect to see logins from. How do you tell a credential stuff from a regular login? They are both coming from unknown IPs with normal login rates and they have valid credentials.
replies(1): >>dogman+VE5
2. dogman+VE5[view] [source] 2024-03-25 23:43:20
>>kevinc+(OP)
Because there’s a bit more to it than just tracking IPs and rates.
[go to top]