CYBERSECURITYTRACKER
TRACKING
Permanent story citation

CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4792

As cited

Copy frozen at (site build).

vulnerabilities

CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification

Researchers disclosed two denial-of-service attacks called CDN Tsunami that exploit how major content delivery networks translate HTTP/3 traffic into HTTP/1.1 requests to origin servers, amplifying attacks by up to 350 times. The vulnerabilities affect multiple large CDN providers including Alibaba and Baidu.

Why it matters: Organizations relying on these CDNs for origin protection face significant amplification risk in their infrastructure; practitioners should review CDN configurations and coordinate with providers on mitigations.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary