Cloudflare DDoS protections ironically bypassed using Cloudflare
#CoSoSec
To make matters worse, the only requirement for the attack is for the hackers to create a free Cloudflare account, which is used as part of the attack.
Certitude's researcher Stefan Proksch discovered that the source of the issue is Cloudflare's strategy to use shared infrastructure that accepts connections from all tenants.
https://certitude.consulting/blog/en/using-cloudflare-to-bypass-cloudflare/