4 ms·
That has only partially mitigated much smaller attacks (residential proxy scraping etc) on my employer's site. We're currently on the "Business" plan, but I'm
by Symbiote 7d ago
That has only partially mitigated much smaller attacks (residential proxy scraping etc) on my employer's site.
We're currently on the "Business" plan, but I'm coming to the conclusion that we need to upgrade to the "Enterprise Advantage" plan for the JA3/4 fingerprinting and detection ID features.
I get put off by "Contact Sales" pricing.
- davidfischer 7d agoHere's my take: * JA3s are mostly useless. JA4s supersede them entirely. * Using JA4s in rate limits is pretty useful and helps a lot against proxy scraping. It was not very helpful in this attack. * Bot detections are somewhat helpful but they don't solve scrapers/attacks by themselves. They're useful as a 2nd/3rd data point (eg. low bot score + bot detection + something else)
- cute_boi 7d agoisn't JA4 also useless because it is so easy to spoof tls. For eg. cycletls for nodejs etc..
- davidfischer 7d agoIt will probably be useless one day. In practice, it is still useful today though not for this attack.
- johneth 7d agoThere's also the JA4+ suite (https://github.com/FoxIO-LLC/ja4 https://github.com/FoxIO-LLC/ja4), in addition to standard JA4.