The city's public website is unreachable while edge logs show huge inbound UDP replies from many third-party resolvers after small spoofed queries. Which network attack pattern best matches these indicators?
Select an answer to reveal the explanation.
Short Explanation
Tiny spoofed asks, giant answers from someone else's servers—that is amplification/reflection DDoS. The website drowns in reply traffic it never asked for, not in password guesses or travel alerts.
Full Explanation
Amplified reflected DDoS abuses services that return large responses to small queries, often with spoofed source addresses so victims receive floods of replies. Lockouts from spraying, impossible-travel identity anomalies, and keylogging are different malicious indicators and do not produce volumetric UDP reply saturation from third-party resolvers.