0PricingLogin
AWS Security Academy · Lesson

Understanding DDoS Attacks on AWS

See how volumetric and protocol floods try to overwhelm services.

What Is a DDoS Attack

A Distributed Denial of Service (DDoS) attack floods a target with traffic from many sources at once, aiming to exhaust its capacity so legitimate users cannot connect. Because the traffic comes from thousands of distributed hosts, you cannot simply block one IP; you must absorb or filter the flood.

Volumetric Attacks

Volumetric attacks aim to saturate network bandwidth with sheer volume, measured in gigabits or terabits per second. Examples include UDP floods and reflection or amplification attacks that bounce traffic off open servers (DNS, NTP) to multiply their size. These operate at Layer 3.

All lessons in this course

  1. Understanding DDoS Attacks on AWS
  2. Shield Standard versus Shield Advanced
  3. The DDoS Response Team and Cost Protection
  4. Architecting for DDoS Resilience
← Back to AWS Security Academy