Nizar Akbar Meilani
I am a two years experienced System Administrator, who work in an Indonesian Hosting Company, that passionate about Linux and scripting language like Bash and Python. I love in understanding the intricacies of Linux and it's isolation mechanism. And I am a new open source person who love to understand how open source community work.
https://www.linkedin.com/in/nizarakbarm/?originalSubdomain=id
Previous Talks –https://pretalx.com/pycon-apac-2024/talk/review/GUW8XGWAZUQFTPBQ9PGT9FL3J9SS8U7C
Session
This paper presents a domain-specific DDoS mitigation approach combining DNS redirection, reverse proxy WAF, and kernel-level filtering with eBPF XDP via bpfilter. Instead of using BGP Flowspec, attacker IPs are identified at the origin, uploaded to a central IP list, and dynamically applied as XDP_HOOK rules using a Python-based service. This architecture enables efficient, low-resource blocking for phishing-injected gambling domains without requiring expensive infrastructure, making it ideal for organizations with limited network-layer control.