If you're dealing with a DDoS, the best thing to do is get CloudFlare, Incapsula and or Sucuri. I would say that you should look into those 3 providers. Another thing to consider is Apache mod_security, mod_evasive, mod_qos, mod_cloudflare paired with fail2ban. This takes some configuration knowledge though. For blocking VPNs, you could always put a block on server hosting company host-names. You could always use WebRTC to reveal the number of IP addresses. If they have additional for example, they are on a VPN. Somehow WebRTC can leak an IP address even through a VPN. http://lifehacker.com/how-to-see-if-your-vpn-is-leaking-your-ip-address-and-1685180082
Check this out too: https://en.wikipedia.org/wiki/VPN_blocking
It would be a good idea to block any/all IPs leased to virtual server hosting companies.
Of course that would require work.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.