{"id":66,"date":"2016-03-10T15:06:27","date_gmt":"2016-03-10T15:06:27","guid":{"rendered":"https:\/\/www.imperva.com\/learn\/?post_type=application_security&#038;p=66"},"modified":"2023-12-20T16:58:35","modified_gmt":"2023-12-20T16:58:35","slug":"slowloris","status":"publish","type":"ddos","link":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/","title":{"rendered":"Slowloris"},"content":{"rendered":"<h2><span style=\"font-weight: 400;\">What is Slowloris?<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Slowloris is an attack tool designed to enable a single machine to take down a server by flooding it with incomplete HTTP requests, without using a lot of bandwidth. The approach, similar to a distributed denial of service (DDoS) attack, makes it harder for legitimate users to access the server or application.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Simple yet sophisticated, a Slowloris attack requires minimal bandwidth for execution. Slowloris has demonstrated remarkable effectiveness against popular web server software, including Apache 1.x and 2.x.\u00a0<\/span><\/p>\n<h2><span style=\"font-weight: 400;\">How Does Slowloris Work?<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Slowloris executes its attack by exploiting the behavior of the HTTP protocol. When making an HTTP request to a server, the server processes the request and reserves a slot for the session until it&#8217;s complete. Slowloris takes advantage of this by initiating an HTTP request but never completing it.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The attack starts by Slowloris establishing multiple connections to the target\u2019s web server. It sends HTTP headers at regular intervals but does not terminate them, leaving the connection open indefinitely. This is referred to as a \u201cpartial request\u201d. HTTP headers are sent at a rate slow enough to keep the connection alive, but not so fast as to complete the request and free the slot.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">As the attacker continues to hold these connections, the web server&#8217;s maximum concurrent connection pool eventually is filled as the server operates as if it is processing heavy volumes of traffic. Consequently, this approach effectively blocks new connections from legitimate users, achieving a denial of service attack. However,unlike typical DoS attacks that require significant bandwidth, Slowloris needs limited resources to execute an attack. The slow and low approach makes it difficult to detect, and standard timeouts do not apply as each partial request keeps the sessions alive.<\/span><\/p>\n<div id=\"attachment_27\" style=\"width: 610px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-27\" class=\"wp-image-27 size-full\" src=\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif\" alt=\"Figure 1: Illustration of a Slowloris attack\" width=\"600\" height=\"263\" \/><p id=\"caption-attachment-27\" class=\"wp-caption-text\">Figure 1: Illustration of a Slowloris attack<\/p><\/div>\n<h2><span style=\"font-weight: 400;\">Example of a Slowloris Attack<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">In six steps, here\u2019s a hypothetical attack scenario where \u2018ExampleWebServer\u2019 is the target of a Slowloris attack.\u00a0<\/span><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The attacker begins by establishing multiple connections to `ExampleWebServer`. To do this, the attacker uses a command such as `slowloris.pl -dns examplewebserver.com` with `slowloris.pl` being the Slowloris script, `-dns` being the option to target a specific DNS, and `examplewebserver.com` is the web server&#8217;s address.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The attacker starts sending partial HTTP requests to `ExampleWebServer`, but keeps the speed slow enough to maintain an open connection.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">`ExampleWebServer`, following standard HTTP protocol behavior, reserves slots for these requests, awaiting their completion.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The attacker&#8217;s Slowloris script continues to send partial requests at regular intervals, keeping the connections open and preventing `ExampleWebServer` from closing the incomplete sessions.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Eventually, `ExampleWebServer` hits its maximum concurrent connection pool limit. At this point, legitimate users cannot establish a new connection.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The web server, believing it&#8217;s under heavy traffic, continues to wait for the requests to be completed, effectively falling victim to a DoS attack.<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\">This is a simple example that demonstrates a basic Slowloris attack. t real-world attacks can be more complex, incorporating tactics to evade detection and\/or increase effectiveness.<\/span><\/p>\n<h2><span style=\"font-weight: 400;\">Why Are Slowloris Attacks Dangerous?<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Slowloris attacks, like DDoS, is a significant risk to a digital business\u2019 operations. for several reasons:<\/span><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Stealth<\/b><span style=\"font-weight: 400;\">: The slow and methodical nature of Slowloris attacks makes them challenging to detect unlike typical DDoS attacks, which flood servers with an overwhelming volume of requests.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Efficiency<\/b><span style=\"font-weight: 400;\">: Slowloris attacks are incredibly resource-efficient. A single machine with a regular internet connection can execute a successful Slowloris attack, requiring minimal bandwidth and computing power. This efficiency makes Slowloris attacks accessible to any motivated bad actor.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Limited traces<\/b><span style=\"font-weight: 400;\">: Slowloris attacks target web servers without affecting other services, leaving few traces behind. This makes mitigation and incident response more challenging.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Denial of Service<\/b><span style=\"font-weight: 400;\">: The goal of a Slowloris attack is a denial of service,. Slowloris attacks can significantly disrupt services and cause business loss and reputational damage.<\/span><\/li>\n<\/ol>\n<h2><span style=\"font-weight: 400;\">How Are Slowloris Attacks Different from Other DoS Attacks?<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Unlike traditional DoS attacks, Slowloris employs a unique, and more subtle, methodology.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">DoS attacks aim to overwhelm a server with a massive flood of traffic, thus requiring considerable bandwidth and computational power. They are often conspicuous and can be detected and mitigated relatively easily by DDoS protection solutions.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">On the other hand, Slowloris attacks adopt a \u201clow-and-slow\u201d approach. Its designed to consume minimal bandwidth and can often appear as regular, legitimate traffic.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Traditional DoS attacks usually impact the entire network, affecting various services and ports, while Slowloris attacks are targeted exclusively at the web server. The targeted impact enhances the stealthiness of Slowloris attacks and adds to the complexity of its mitigation.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Finally, Slowloris attacks exploit a specific vulnerability in the behavior of HTTP protocol. A DoS is more generic in the way it performs a volumetric attack. Organizations must understand the nuances and safeguard their web applications and servers from targeted and sophisticated attacks, like a Slowloris, in addition to the conventional DoS threats.<\/span><\/p>\n<h2><span style=\"font-weight: 400;\">How is a Slowloris Attack Mitigated?<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">To protect a web server from a Slowloris attack, implement a multi-faceted defense strategy. Here are some practical steps that can be taken:<\/span><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Update web server software<\/b><span style=\"font-weight: 400;\">: Updating web server software regularly can help protect against Slowloris attacks. Some servers have built-in protection against these forms of attacks. For instance, Apache 2.2.15 and above include a module called &#8216;mod_reqtimeout&#8217; that helps mitigate Slowloris.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Limit connection time<\/b><span style=\"font-weight: 400;\">: Configuring your server to limit the maximum time a client can keep a connection open without fully transmitting a request can prevent Slowloris from holding connections indefinitely. This is particularly effective if the server allows for flexibility in the connection time based on the client&#8217;s behavior.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Monitoring and managing the connection pool: Maintaining visibility of the connection pool can help identify abnormal behavior. If a large number of connections are open for an unusually long time, it could be an indication of a Slowloris attack. By manually freeing up suspiciously slow connections, a Slowloris attack could be stopped.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Use load balancers or reverse proxies<\/b><span style=\"font-weight: 400;\">: Load balancers can distribute network traffic across multiple servers, reducing the impact of a Slowloris attack. Similarly, reverse proxies can hide the IP address of your server, making it harder for Slowloris to target.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">IP address-based rate limiting: Implementing rate limiting based on IP addresses helps prevent a single IP from consuming all available connections.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Intrusion Detection Systems (IDS)<\/b><span style=\"font-weight: 400;\">: IDS detects unusual traffic patterns and can identify potential Slowloris attacks. Some systems can automatically take corrective actions when they detect an attack.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Ap<\/span><b>ply patches<\/b><span style=\"font-weight: 400;\">: Several third-party patches can protect specific web servers software from the threat of a Slowloris attack. However, use these with caution and only from trusted sources.<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\">Remember, no single method is completely effective in protecting against Slowloris attacks. A combined approach using a variety of techniques will provide the most effective defense.<\/span><\/p>\n<div class=\"ddos-banner\"><div class=\"wrap\"><p>See how Imperva DDoS Protection can help you with DDoS attacks.<\/p>\n<div class=\"cta-container\">\n                                                    <a class=\"impv-yellow-btn\"  event-action=\"Click\"  event-category=\"LC Banner\"  event-label=\"Request demo\"  gtm-track  target=\"_self\" href=\"javascript:openModal('modalid3533', '\/learn\/banner\/virtual\/request-demo\/', 'Personal Demo Request | Imperva');\">Request demo<\/a>\n                                                    <a class=\"gst-yellow-dark-text-btn\"  event-action=\"Click\"  event-category=\"LC Banner\"  event-label=\"Learn more\"  gtm-track  target=\"_self\" href=\"https:\/\/www.imperva.com\/products\/ddos-protection-services\/\">Learn more<\/a>\n                                                <\/div><\/div><\/div><h2><span style=\"font-weight: 400;\">How Imperva Mitigates DoS and Slowloris Attacks<\/span><\/h2>\n<p><a href=\"https:\/\/www.imperva.com\/products\/ddos-protection-services\/\"><span style=\"font-weight: 400;\">Imperva DDoS Protection<\/span><\/a><span style=\"font-weight: 400;\"> proxies all incoming traffic to block layer 3\/4 and layer 7 attacks, such as slowloris, from reaching origin servers.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Imperva secures websites, networks, DNS servers and individual IPs from the largest and most sophisticated types of DDoS attacks &#8211; including network, protocol and application level attacks \u2013 with minimal business disruption. The cloud-based service keeps online businesses up and running at high performance levels even under attack, avoiding financial losses and serious reputation damage.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The high-capacity global network holds more than six Terabits per second (6 Tbps) of scrubbing capacity and can process more than 65 billion attack packets per second. It scales as needed to absorb the largest attacks that can overwhelm legacy appliances. Imperva incorporates crowdsourced learnings from emerging attack methods across our network, utilizing machine learning for the most up-to-date, accurate, and advanced protection.<\/span><\/p>\n<p><b>Defense in depth<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Imperva offers a complete suite of defense-in-depth security solutions providing multiple lines of defense to secure critical applications, APIs, data, and networks.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The Imperva Application Security Platform, consisting of the web application firewall (WAF), Advanced Bot Protection, DDoS Protection, API Security and more, provides protection for all application-layer attacks as well as smokescreen DDoS assaults. <\/span><\/p>\n","protected":false},"featured_media":0,"template":"","categories":[10],"class_list":["post-66","ddos","type-ddos","status-publish","hentry","category-ddos"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>What is Slowloris? | Examples &amp; Mitigation Techniques | Imperva<\/title>\n<meta name=\"description\" content=\"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"What is Slowloris? | Examples &amp; Mitigation Techniques | Imperva\" \/>\n<meta property=\"og:description\" content=\"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/\" \/>\n<meta property=\"og:site_name\" content=\"Learning Center\" \/>\n<meta property=\"article:modified_time\" content=\"2023-12-20T16:58:35+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"7 minutes\" \/>\n\t<meta name=\"twitter:label2\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data2\" content=\"Itamar Verta\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/\",\"url\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/\",\"name\":\"What is Slowloris? | Examples & Mitigation Techniques | Imperva\",\"isPartOf\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif\",\"datePublished\":\"2016-03-10T15:06:27+00:00\",\"dateModified\":\"2023-12-20T16:58:35+00:00\",\"description\":\"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage\",\"url\":\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif\",\"contentUrl\":\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif\",\"width\":600,\"height\":263},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.imperva.com\/learn\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"DDoS\",\"item\":\"https:\/\/www.imperva.com\/learn\/edge-security\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Slowloris\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.imperva.com\/learn\/#website\",\"url\":\"https:\/\/www.imperva.com\/learn\/\",\"name\":\"Learning Center\",\"description\":\"Imperva\",\"publisher\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.imperva.com\/learn\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.imperva.com\/learn\/#organization\",\"name\":\"Imperva Inc\",\"url\":\"https:\/\/www.imperva.com\/learn\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.imperva.com\/learn\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2023\/06\/Linkedin-FB-OG-sharing.jpeg\",\"contentUrl\":\"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2023\/06\/Linkedin-FB-OG-sharing.jpeg\",\"width\":1200,\"height\":627,\"caption\":\"Imperva Inc\"},\"image\":{\"@id\":\"https:\/\/www.imperva.com\/learn\/#\/schema\/logo\/image\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"What is Slowloris? | Examples & Mitigation Techniques | Imperva","description":"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/","og_locale":"en_US","og_type":"article","og_title":"What is Slowloris? | Examples & Mitigation Techniques | Imperva","og_description":"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.","og_url":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/","og_site_name":"Learning Center","article_modified_time":"2023-12-20T16:58:35+00:00","og_image":[{"url":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif","type":"","width":"","height":""}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"7 minutes","Written by":"Itamar Verta"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/","url":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/","name":"What is Slowloris? | Examples & Mitigation Techniques | Imperva","isPartOf":{"@id":"https:\/\/www.imperva.com\/learn\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage"},"image":{"@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage"},"thumbnailUrl":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif","datePublished":"2016-03-10T15:06:27+00:00","dateModified":"2023-12-20T16:58:35+00:00","description":"Slowloris works by opening multiple connections to the targeted web server and keeping them open as long as possible.","breadcrumb":{"@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#primaryimage","url":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif","contentUrl":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2019\/01\/headless-browser-ddos-attack-heatmap-1.gif","width":600,"height":263},{"@type":"BreadcrumbList","@id":"https:\/\/www.imperva.com\/learn\/ddos\/slowloris\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.imperva.com\/learn\/"},{"@type":"ListItem","position":2,"name":"DDoS","item":"https:\/\/www.imperva.com\/learn\/edge-security\/"},{"@type":"ListItem","position":3,"name":"Slowloris"}]},{"@type":"WebSite","@id":"https:\/\/www.imperva.com\/learn\/#website","url":"https:\/\/www.imperva.com\/learn\/","name":"Learning Center","description":"Imperva","publisher":{"@id":"https:\/\/www.imperva.com\/learn\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.imperva.com\/learn\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.imperva.com\/learn\/#organization","name":"Imperva Inc","url":"https:\/\/www.imperva.com\/learn\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.imperva.com\/learn\/#\/schema\/logo\/image\/","url":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2023\/06\/Linkedin-FB-OG-sharing.jpeg","contentUrl":"https:\/\/www.imperva.com\/learn\/wp-content\/uploads\/sites\/13\/2023\/06\/Linkedin-FB-OG-sharing.jpeg","width":1200,"height":627,"caption":"Imperva Inc"},"image":{"@id":"https:\/\/www.imperva.com\/learn\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/ddos\/66","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/ddos"}],"about":[{"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/types\/ddos"}],"version-history":[{"count":6,"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/ddos\/66\/revisions"}],"predecessor-version":[{"id":2723,"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/ddos\/66\/revisions\/2723"}],"wp:attachment":[{"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/media?parent=66"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.imperva.com\/learn\/wp-json\/wp\/v2\/categories?post=66"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}