http://www.w3.org/ns/prov#value | - you have no way of knowing whether that attack was a distributed denial of service attack, even if you were the admin of the server (or network) that was being attack, unless you have the cooperation of your upstream ISPs - which would be just as necessary to get proof of the origin of a spoofed attack.
|