This morning a user managed to bypass the security of my site and began to execute a function that I have in my appwrite many times, I don't understand how the hacker managed to modify the payload that is sent to the function, but I blocked his account and it seemed to stop for a few minutes, until it started creating multiple accounts, blocking and blocking but it just won't stop...
Is there a way to ban your IP?
I'm still investigating everything he did, but when I have more information about what happened I'll share it here, especially the part where this user managed to modify the payload that is sent to the function.