(no title)
headlessvictim2 | 4 years ago
The freemium service provides access to compute-heavy machine learning models running on GPUs.
Hackers blast 50-100 requests in the same second, which clog the servers and block legitimate users.
We reported IPs to AWS and use Cloudflare "Super Bot Fight Mode" to thwart attacks, but the hackers still break through.
We don't require accounts, but could impose account requirements if this helps.
Any suggestions?
austincheney|4 years ago
The one event that cannot be automated is cursor movement/position. Put a check into your event handlers that check that the cursor is actually over the event target.
mesadb|4 years ago
darkstar999|4 years ago
headlessvictim2|4 years ago
Are you saying block form submission unless the cursor is over the event target?
If so:
* How to handle legitimate requests from mobile users?
* How to handle form submissions with the "return" key?
slig|4 years ago
rob-olmos|4 years ago
1vuio0pswjnm7|4 years ago
headlessvictim2|4 years ago
Are there proxy examples you could point us to?
Thanks for your help.
cmeacham98|4 years ago
headlessvictim2|4 years ago
The freemium service provides access to machine learning models on GPU instances, served with FastAPI.
Each request invokes a compute-intensive ML model, but perhaps there is something wrong with the FastAPI configuration as well?
synergy20|4 years ago
forgotmyoldacc|4 years ago
headlessvictim2|4 years ago
It is possible, but this degrades the experience for legitimate users.
We prefer solving this without impacting/taxing normal users if possible.
rabi_molar|4 years ago
headlessvictim2|4 years ago
It is possible, but this degrades the experience for legitimate users.
We prefer solving this without impacting/taxing normal users if possible.
machiaweliczny|4 years ago
unknown|4 years ago
[deleted]