|
|
|
|
|
by ArcHound
4 days ago
|
|
I think we agree that JA4 is situational. It really saved me when investigating a credential stuffing attack - random logins with random chance of success spread into many ASNs, all had the same fingerprint. From my experience, there are all kinds of levels of bots. Add them all together and they can produce a ridiculous load on a site (especially a fragile one that you have to secure anyway). So I look at the volume, trying to block anything stupid I can get away with. It is a game of whack-a-mole. It also can cut down the overall traffic to a fraction of the original, which has tangible infra costs benefits. And yes, captcha works better in a lot of cases. Fortunately I'm not selling JA4, I'm just curious. And yes, IP rate limits and ASN checks work really well in plenty cases. Side note: I got a high-throughput free offline asn-checker too! https://blog.miloslavhomer.cz/asn-check/ |
|
Cool ASN project, but doesn't IPInfo already offer this for free: https://ipinfo.io/lite ?