Hacker News new | ask | show | jobs
by coldpie 1108 days ago
So the answer is it's just speculation and has never been seen in the wild :)
2 comments

Kind of a snarky response. Obviously this has been seen in the wild. If you created an intrusion detection system to look for suspicious requests, I think one occurring over and over and at a regular interval would clearly be seen as malicious and not a genuine user.
> Obviously this has been seen in the wild.

Can you provide an actual example? I see it come up a lot in these conversations, but I'm really skeptical that anyone actually does this analysis. It seems like rate analysis (either requests or bandwidth) would achieve the same result in a far simpler manner, so I suspect that is what actually happens.

Sure, you can interpret my answer like that, if that makes you happy.