X
X
X
X
All systems operational · 200 Tbps+ DDoS protection active
Sign Up Sign In 08505574494

DDoS Protection

Multi-layered mitigation against volumetric and application-layer attacks, standard on every plan.

Layered Defence

We stop attacks before they reach your server

Traffic passes through our scrubbing centre first. Malicious packets are dropped at the network edge; only clean traffic reaches you.

Capacity and coverage

Volumetric (L3/L4) coverage 200 Tbps+
Application layer (L7) coverage L3 / L4 / L7
Automatic activation < 3 sn
nubitro · mitigation PROTECTION ACTIVE
Clean traffic Blocked attack
Protection status ACTIVE
Mitigation capacity 200 Tbps+
Filtering type TCP / UDP / ICMP / GRE
Layer support L3 / L4 / L7
Location Offshore + TR hybrid
SLA guarantee %99.9 uptime
How traffic gets scrubbed

Where does traffic go before it reaches your server?

Protection runs at the network edge, not on your server. The attack stops before it can saturate your link.

Mixed traffic

Genuine visitors and attack traffic arrive together.

INGRESS

Nubitro scrubbing

Signature and behavioural analysis run together; malicious packets are dropped.

SCRUBBING

Your server

Only clean traffic arrives; your resources are never consumed by the attack.

EGRESS
Layered Defence

Attack types we mitigate

L3 / L4

Volumetric attack filtering

UDP floods, SYN floods, ICMP floods and amplification attacks are dropped at the edge before your link saturates.

200 Tbps+ Capacity
L7

Application layer protection

HTTP floods, slow connections (slowloris) and bot traffic are separated by behavioural analysis. Real visitors are unaffected.

Real time Analysis
AUTO

Automatic activation

Mitigation engages on detection without waiting for manual action. You never have to call anyone at 3am.

< 3 sn Response
Attack types we mitigate

Which attack is stopped by which method?

No single technique stops everything. A different method engages per attack type.

Attack type Layer Method applied Status
UDP / SYN / ACK Flood L3 / L4 Rate limiting + source validation Mitigated
TCP state table exhaustion L4 SYN cookies and connection state tracking Mitigated
DNS & NTP Amplification L3 / L4 Signature-based removal of reflection sources Mitigated
HTTP(S) Flood (L7) L7 Request behaviour analysis + bot separation Mitigated
Slowloris / Slow POST L7 Connection duration and header inspection Mitigated
Botnet-sourced traffic L3 – L7 Geo and reputation based filtering Mitigated
Game server protocol attacks L4 / L7 Protocol-specific packet validation Mitigated
Zero-day attack patterns L3 – L7 Anomaly detection and dynamic rule generation Mitigated
What happens when an attack starts?

What happens when an attack starts?

The process never waits for manual intervention; it completes before you notice.

Protection is not an add-on
1 0 s

Traffic routes to the scrubbing centre

All inbound traffic passes through our filtering nodes first. This works without any action from you.

2 < 3 s

Malicious packets are dropped

Signature and behavioural analysis run together; attack patterns are discarded at the edge.

3 Continuous

Clean traffic reaches your server

Only genuine visitor traffic arrives, so your resources are never consumed by the attack.

4 Afterwards

The incident is reported

Attack duration, size and type are logged and shared with you on request.

How it differs from standard hosting

How it differs from standard hosting

At most providers DDoS protection is a separately sold product that does not engage during the attack.

Feature Standard hosting Nubitro
DDoS protection included Hayır Evet
Filtering capacity Unclear / limited 200 Tbps+
Application layer (L7) protection Hayır Evet
Automatic activation on attack Hayır Evet
Service interruption during attack Frequently null-routed Last resort, with notice
Post-incident report Hayır Evet
Who gets targeted most?

Who gets targeted most?

Your exposure depends on your sector. These four are the ones we see most:

Game servers

Rival servers and player disputes make attacks routine. Downtime translates directly into lost players.

Most common: UDP floods, protocol attacks

E-commerce sites

Campaign periods raise both genuine traffic and attacks; staying up maps directly to revenue.

Most common: L7 floods during campaigns

News & media

Breaking news lifts visitors and attackers at once; going dark costs credibility.

Most common: Sudden botnet-sourced traffic

Finance & crypto

Exposed to targeted, sustained attacks; even short outages mean lost transactions and reputation.

Most common: Targeted L7 and amplification
Technical summary

Technical summary

Filtering capacity
200 Tbps+
Supported protocols
TCP / UDP / ICMP / GRE
Protected layers
L3 / L4 / L7
Location
Offshore + TR hybrid
Time to engage
< 3 sn
Uptime commitment
%99.9
Additional cost
None — included in every plan
Incident reporting
On request
FAQ

Common questions

No. Protection is standard on all plans including hosting, VPS and dedicated. You are never asked to buy an upgrade during an attack.

Our goal is to keep you online, not to switch you off. Traffic is routed through our scrubbing centre and malicious packets are dropped. Null-routing is a last resort, applied only in exceptional cases beyond capacity and always with notification.

Filtering happens at the network edge, so under normal conditions the measurable difference is very small. Latency-sensitive services such as game servers get a dedicated profile.

Hosting and VPS orders provision automatically once payment is confirmed, usually within minutes. Dedicated servers may take longer due to hardware preparation.

Yes. Standard cPanel/Plesk migrations are free — just open a ticket. For custom setups we plan the move with you first.

Secure your infrastructure today

Browse the plans, or tell us what you need and we will size it with you.

Powered by WISECP
💬
Top