[Defender Pro] 404 lockouts – attack

Hey there! I am getting tons of 404 lockouts from all over the world. A couple of thousands each day on the swedish site https://duschgardiner.se

Is there anything I can do? Defender seems to be doing its job but how long will this continue? It’s been going since the 17th of Oct.

I have banned a couple of the ips but new ones popup. Bots of course. But it messes with my GA data and the small traffic I have. :slight_smile:

  • Adam
    • Support Gorilla

    Hi Marcus

    I hope you’re well today!

    If you take a look at the URLs that are either being locked out or just reported in Defender – for 404 status- you will notice that most of them seem to be legitimate URLs that appear to be either some product pages or “add to cart” links.

    It seems like these got indexed somewhere (e.g. Google). There’s really not much to be done apart from keeping them detected (and locked out) by Defender but it would be good to actually take care of

    – those missing pages – the product pages that do not exist anymore; redirecting them to a main store page would be a good idea, using 301 redirect;

    – those “add to cart” pages – this could be excluded from indexing via robots.txt file

    With Defender active and those changes at some point extensive traffic to to those URLs should get lower and eventually stop as the URLs would be gradually “re-indexed” by search engines. Will it stop fully in future though?

    The answer is: I don’t really know. In most cases there’s always some amount of such traffic and 99% of the cases there are and will be some bots trying to “examine” site (including “pinging” some non-existent URLs on it) as long as the site is live and publicly available. The point is to keep monitoring of it (what Defender already does for you) and try to keep the site as secured as possible so those attempts wouldn’t result in any “break in” :slight_smile:

    Best regards,
    Adam