| CPC H04L 63/1458 (2013.01) [G06F 9/5027 (2013.01); H04L 63/20 (2013.01)] | 14 Claims |

|
8. A computer-implemented method for dynamically mitigating a distributed-denial-of-service (DDOS) attack, the computer-implemented method comprising:
detecting a DDOS attack directing malicious traffic to a target;
identifying a first source location and a second source location of the malicious traffic;
determining a first bandwidth consumed by the malicious traffic originating from the first source location;
determining a second bandwidth consumed by the malicious traffic originating from the second source location; and
in response to detecting the DDOS attack:
activating a first scrub cluster at the first source location, wherein a size of the first scrub cluster is based on the determined first bandwidth;
activating a second scrub cluster at the second source location, wherein a size of the second scrub cluster is based on the determined second bandwidth.
|