Q2 2025 DDoS observations: packet rate and business bandwidth

Assess packet processing, connection state and legitimate traffic independently.

Contents of this article

Two different measurements

Cloudflare’s July 15, 2025 report discussed both high-bandwidth and high-packet-rate attacks. The useful lesson is to distinguish the measurements, not to turn another provider’s records into a service claim.

Small packets can create substantial processing work

Game and communication services often handle many small messages. Assess packet handling, connection tracking and protocol recognition as well as Gbps. Confirm legitimate traffic bandwidth separately from the attack-mitigation allowance.

Provide reproducible requirements

Provide typical message sizes, peak sessions, ports, user regions and heartbeat behavior. Validate in an authorized environment within an agreed traffic scope, focusing on legitimate connectivity rather than launching public attack traffic.

Locate the failing layer

Align protection-edge, forwarding and origin records by time. If mitigation is healthy but the game process is congested, inspect the application and host. If no request reaches the origin, check forwarding and allow rules first.

References

Cloudflare Q2 2025 DDoS report

Related products and onboarding

View products and onboarding information

Back to industry insights Contact technical support