BSidesLuxembourg 2025

DDoS Protection of the Europa websites
2025-06-19 , Secondary stage

The session will present how all drupal sites hosted using DIGIT drupal hosting service are protected from DDoS attacks. During the session, you will understand what is a DDoS, how our teams monitor and identify similar attacks and which measures we put in place for protecting drupal sites. The session will cover as well more detailed information on the good practices developers should follow in order to minimize impact of DDoS attacks as well as how the advanced DDoS protections could impact certain functionalities on drupal sites. One partial attention will be dedicated to the increment in bots and crawlers, particularly relevant following the launch of multiple generative AI models.

Andrei Petrovic is an IT Service manager in DIGIT for almost 5 years and has held different other roles in the European Intitutions over the course of the last 10 years. With a background in IT engineering and a specialisation in IT Security and International Relations, he coordinates the Drupal Hosting service that hosts more than 300 public websites of the different European Institutions.

Florin Bota is Head of Sector in DIGIT and leads all activities related to Web Operations and Security. He obtained a PhD in Computer and Control Engineering from Politecnico di Torino and has more than 30 years of experience of working in IT in various roles, including almost 10 years at EC in DIGIT.