UPDATED 21:56 EDT / NOVEMBER 20 2017

INFRA

Report: Distributed denial-of-service attacks have doubled so far this year

The number of distributed denial-of-service attacks experienced by enterprises has doubled since the start of the year, according to a newly published report.

Corero Network Security Ltd. said organizations using their services experienced an average of 237 DDoS attack attempts per month during the third quarter, or the equivalent of eight DDoS attack attempts a day. That’s a 35 percent jump over the second quarter and double the average of four dailt DDoS attack attempts at the beginning of 2017. DDoS attackers try to make an online service unavailable by overwhelming it with traffic from many sources.

Notable in the numbers was an increase in what the report describes as sophisticated multivector attacks, which employ several techniques in the hope that one, or the combination of a few, can penetrate the target a network’s security defenses.

There was also a return of Ransom Denial of Service attacks. RDoS is an old-school form of attack that involves hackers threatening to launch a DDoS attack if a payment, usually in bitcoin, isn’t made.

In the past, many companies have simply paid the ransom, but the tide shifted against the method in January 2016 when bitcoin exchange BTCC Technology Ltd. fought back against the extortion method and won. The return of RDoS is attributed to a hacker group called “Phantom Squad” that started an extortion campaign in September targeting banking and financial institutions, hosting providers, online gaming services and software-as-a-service companies in the U.S., Europe and Asia.

The report attributes the surge in overall DDoS attacks to the rise of DDoS-for-hire services and the proliferation of unsecured “internet of things” devices. “The growing availability of DDoS-for-hire services is causing an explosion of attacks, and puts anyone and everyone into the crosshairs,” Corero Chief Executive Officer Ashley Stephenson said in a statement. “These services have lowered the barriers to entry in terms of both technical competence and price, allowing anyone to systematically attack and attempt to take down a company for less than $100.”

There’s also an arms race to infect vulnerable devices, effectively thwarting other attackers from commandeering the device, Stephenson added. “Cybercriminals try to harness more and more internet-connected devices to build ever larger botnets,” she said. “The potential scale and power of IoT botnets has the ability to create internet chaos and dire results for target victims.”

Image: Sagor Kumar sr/Wikimedia Commons

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.