Remix.run Logo
michaelt 8 hours ago

> If the system is configured to "fail open", and it's something validating access (say anti-fraud),

The problem here isn't the DoS, it's the fail open design.

jpollock 7 hours ago | parent [-]

If the majority of your customers are good, failing closed will cost more than the fraud during the anti-fraud system's downtime.

lazyasciiart 3 hours ago | parent [-]

Until any bad customer learns about the fail-open.