Quick contact
Boilerplate (cleared for reuse, no approval needed)
Founder
Story angles already covered (or available)
- How HTTP/2 frame-abuse vectors evolved 2 years after CVE-2023-44487
- Why most "DDoS protection" deployments are never actually validated
- Building a 23-cloud bot fleet for distributed attack-traffic generation
- Open Protection Index (OPI): an open standard for grading external DDoS posture
- The shared-fate problem: when one origin going down takes 40 subdomains with it
- What 25 bot-detection vendors actually do differently — fingerprint study
- Israeli infrastructure as a real-world DDoS testing ground (regional angle)
Brand assets
Asset use is unrestricted for editorial coverage. No re-color, no logo distortion. If you need a different format or aspect ratio, ask the press inbox; we ship within an hour.
Selected coverage
Coverage will be listed here as it appears. Last updated: 2026-04-28.
Founding context
DDactic was started after multiple engagements showed the same gap: enterprises pay six and seven figures for DDoS protection — Cloudflare Magic Transit, Akamai Prolexic, Imperva, AWS Shield Advanced, Radware DefensePro — and almost nobody actually tests whether the protection holds. The industry-standard alternative is a vendor-led "DDoS test" delivered as an appointment: 4 hours, scheduled weeks ahead, run from a single ASN against the production target. That misses the entire L7 surface, doesn't probe IP rotation, and gives no per-vector data.
DDactic runs continuous, distributed simulation across 23+ cloud providers with per-vector attribution and stage-reprobe validation after customer hardening changes. Free passive scan for any domain; paid active simulation for verified customers.
Quick facts (for fact-check)
- Founded: 2025
- HQ: Tel Aviv, Israel
- Bot fleet: deployable across 23+ cloud providers (AWS, GCP, Azure, IBM, Hetzner, OVH, DigitalOcean, Vultr, Linode, Scaleway, Cherry, Civo, Exoscale, Fly, Hostinger, IONOS, Kamatera, Leaseweb, LunaNode, ServerSpace, UpCloud, Zenlayer, Alibaba, Tencent)
- Attack vectors covered: ~200, mapped across L3 (ICMP/IP), L4 (TCP/UDP/QUIC), L7 (HTTP, HTTP/2, HTTP/3), Low-and-Slow, and Protocol-Specific (SMTP, SSH, RDP, SIP, LDAP, gRPC, WebSocket)
- Bot-detection vendors fingerprinted: 25
- Free scan endpoint: ddactic.net/free-scan · no signup, email-gated unlock for full report
- Open standards: OPI (Open Protection Index) — Apache 2.0