F5 Distributed Cloud > F5 Distributed Cloud: Advanced Threat & Fraud Security Source | Edit on
Lab 4: Defend Against an Ongoing Attack¶
Scenario Lab 4
In this lab, you will put your newfound Distributed Cloud security skills to test by defending against a persistent web-scraping attack. This lab is purposefully lean in screenshots and step by step directions as it requires you to use what you have learned for the shot at winning a gift card if you are the first to mitigate the attack (for AppWorld 2025 Las Vegas live event only)
The F5 Air web application has a flight search feature that is being targeted by a nefarious black-market reseller. Examine the feature at http://namespace.lab-sec.f5demos.com/flight and search for flights.
Note: Only the year 2022 can be used as the backend db has not been updated
Expected Lab Time: 30 minutes
Task 1: Launch the attack¶
In this task you will utilize the scrape-bot script which will be leveraged against F5 Air. Scrapers like this are used today across many different industries - Insurance, Travel, Automotive, Financial to name a few. This type of traffic is typically considered malicious unless previously approved.
|
|
Task 2: Modify the Bot Security Policy¶
In this activity you will review the logs and determine what the scraper-bot is attacking. You will then use the information gleaned from the request logs to create an additional endpoint rule to handle the scraper traffic. Lastly you will check your request logs after adding the scraper endpoint rule.
|
|
|
Task 3: Place into Blocking Mode¶
For this exercise you will work on putting Bot Protection endpoint policy into blocking mode. You will also customize a message for the Bot traffic mitigation response. Finally we need to verify that the policy is properly configured and mitigating the scraper attack.
|
|
|
Task 4: Claim your prize if you’re the first to complete this lab!¶
If your logs show the proper endpoint and method being blocked with the correct blocking page response, let a lab assistant know. Congratulations! Go claim the gift card |
End of Lab 4: This concludes Lab 4, feel free to review and test the configuration. |