Skip to content

DDoS Protection

Syncara Cloud provides foundational DDoS mitigation across all of our hosting locations to help safeguard your services from common volumetric and application-layer attacks. While our protection is capable of absorbing most standard-level threats, the outcome of an attack may vary depending on its scale, persistence, and sophistication — in some cases, an IP nullroute or temporary service suspension may be necessary to preserve network stability.

Our team will make reasonable efforts to notify you if we detect a recurring pattern of malicious traffic targeting your service. However, immediate notification may not always be feasible, particularly during large-scale incidents that threaten the integrity of our broader network infrastructure.

Our DDoS mitigation system is directly connected to a Layer 1 Scrubbing Center (Port 100G) on switching equipment at Equinix Singapore. This connection uses direct peering (not a GRE Tunnel), providing significantly higher reliability — even during large-scale attacks, the mitigation connection remains stable and uninterrupted.

  • Unmetered Mitigation — Mitigation technology is automatically and by default provided to all clients, with no minute or day-based mitigation counting, and is always available 24/7.
  • Unlimited Clean Traffic Delivery — Our clean pipe is based on your ordered port interface. There are no usage limits or hidden fees.
  • Standard Protection Up to 1 Gbps — All Syncara Cloud services are protected with standard DDoS mitigation up to 1 Gbps by default.

Our mitigation system supports several detection modes that can be tailored to your needs:

Both Normal Mode and Rapid Mode use thresholds for detection. The engine calculates traffic for each signature in real-time and compares it against manually configured thresholds. If traffic exceeds these thresholds, it is considered abnormal.

The key difference lies in time granularity:

  • Normal Mode — Samples at the minute level
  • Rapid Mode — Samples at the second level

Smart Mode uses machine learning algorithms to analyze historical netflow traffic data and automatically detect network attacks. Its advantages include:

  • Automatic learning from extensive historical and real-time data
  • Minimal manual configuration required
  • Simultaneous use of multiple traffic variables
  • Better identification of complex traffic patterns compared to conventional threshold-based methods
SpecificationDetail
Mitigation CapacityUp to 1 Tbps+
PPS ProtectionUp to 200,000 pps
Mitigation Time2–3 minutes
Scrubbing ConnectionLayer 1, Port 100G (Equinix SG)

Launching DDoS attacks is considered a criminal offense in numerous jurisdictions worldwide:

  • United States — Such activity constitutes a violation of the Computer Fraud and Abuse Act (CFAA) of 1986, which may result in severe penalties including imprisonment, substantial fines, and a permanent criminal record.
  • Indonesia — Under Law No. 1 of 2024 on Electronic Information and Transactions (UU ITE), specifically Articles 32 and 33, any action that causes disruption to an electronic system — including DDoS attacks — is punishable by up to 10 years of imprisonment and/or a fine of up to IDR 10 billion.
  • Malaysia — DDoS attacks fall under the Computer Crimes Act 1997 (Act 563), which criminalizes unauthorized access and interference with computer systems. Offenders may face imprisonment of up to 10 years and/or significant fines.
  • Singapore — Under the Computer Misuse Act 1993 (Cap. 50A), unauthorized interference with computer systems — including DDoS — is a criminal offense carrying penalties of up to 10 years of imprisonment and/or fines of up to SGD 50,000.
  • Worldwide — Most countries have enacted cybercrime legislation that explicitly prohibits denial-of-service attacks. Regardless of your jurisdiction, launching or facilitating DDoS activity is almost universally considered a serious criminal offense.

Additionally, acquiring or utilizing DDoS-for-hire services, stress testing tools, or botnets is both unethical and a direct contribution to organized cybercrime. These tools typically rely on vast networks of compromised devices — many of which belong to unknowing victims whose systems have been hijacked without consent.