UK becomes the world's number two target for DDoS hackers

'Boredom and spite' behind 220% increase in DDoS attacks, finds Imperva

Hacking

DDoS attacks have increased more than 220%, with the UK becoming the second most popular target in the world, according to research conducted by security firm Imperva.

The company's annual DDoS threat landscape report found that DDoS - or Distributed Denial of Service - attacks rose by 221% between 1 April 2015 and 31 March 2016.

Advertisement - Article continues below

This uptick was fuelled by the increasing availability of IP stressers and booters, which can effectively act as a 'DDoS-for-hire' service, Imperva said. Use of these tools comprised over 90% of all DDoS attacks in Q1 2016.

Booters and stressers are commonly used to stress-test websites' ability to cope with massive traffic volumes, but can also be used by malicious hackers as a cheap and easy way to take a site offline by flooding it with traffic.

The US fared worst in the number of DDoS attacks suffered, experiencing 50.3% of all attacks in Q1 2016, followed by the UK at 9.2%, then Japan at 6.7%, while the Germany suffered 3.1% of attacks and the Netherlands counted 2.9%.

UK businesses suffered a huge 23.2% of all attacks in the last three months of 2015, Its report read: "While the majority of attacks in the UK targeted small and medium sized organizations, this trend also translated into several high-profile assaults, including the takedowns of the BBC, HSBC UK and the Irish National Lottery."

Advertisement
Advertisement - Article continues below
Advertisement - Article continues below

"Distributed Denial of Service (DDoS) attacks are now readily available as a subscription service for the price of a deli Sandwich," said ESET security specialist Mark James, "and these services enable you to have all the benefits of large traffic based attacks without the need of the hardware to back it up.

Sadly many small businesses will not have any measures in place to mitigate these types of attacks, seeking help through professional services and expertise should be on your list when taking the multi-layered security approach you need in protecting the modern digital business."

"The fact that DDoS-for-hire now accounts for over 90 percent of all assaults paints a new profile of top bad actors," the report added. "These are non-professionals who use DDoS for racketeering or to instigate attacks out of boredom or spite. The existence of such unpredictable offenders poses a new threat to many online entities that traditionally didn't consider themselves a potential target."

Advertisement - Article continues below

This "hobbyist" activity means that most of the DDoS activity observed by Imperva was brief and unsophisticated, with 66% of attacks using just one attack vector and almost 90% lasting less than an hour.

However, the figures also revealed how hackers can use DDoS attacks as part of a wider breach strategy. According to Imperva, experienced hackers sometimes launch multiple short DDoS attacks, spaced out over weeks.

This has the effect of exhausting security and response teams by keeping them on high alert around the clock. DDoS attacks can also be used as a smokescreen, distracting security operatives from a hackers's real goal, such as sabotage or data exfiltration.

Imperva's research also revealed that attackers are becoming more persistent. In the first quarter of 2016, half of all targets were hit by more than one attack, with nearly 20% hit by almost five.

Featured Resources

Preparing for long-term remote working after COVID-19

Learn how to safely and securely enable your remote workforce

Download now

Cloud vs on-premise storage: What’s right for you?

Key considerations driving document storage decisions for businesses

Download now

Staying ahead of the game in the world of data

Create successful marketing campaigns by understanding your customers better

Download now

Transforming productivity

Solutions that facilitate work at full speed

Download now
Advertisement
Advertisement

Recommended

Visit/security/ransomware/356292/university-of-california-gets-fleeced-by-hackers-for-114-million
ransomware

University of California gets fleeced by hackers for $1.14 million

30 Jun 2020
Visit/security/cyber-security/356289/australia-announces-135b-investment-in-cybersecurity
cyber security

Australia announces $1.35 billion investment in cyber security

30 Jun 2020
Visit/cloud/cloud-security/356288/csa-and-issa-form-cybersecurity-partnership
cloud security

CSA and ISSA form cyber security partnership

30 Jun 2020
Visit/security/ethical-hacking/356252/poorly-secured-banking-apps-lead-to-cyber-threats
ethical hacking

Mobile banking apps are exposing user data to attackers

26 Jun 2020

Most Popular

Visit/business/business-operations/356395/nvidia-overtakes-intel-as-most-valuable-us-chipmaker
Business operations

Nvidia overtakes Intel as most valuable US chipmaker

9 Jul 2020
Visit/laptops/29190/how-to-find-ram-speed-size-and-type
Laptops

How to find RAM speed, size and type

24 Jun 2020
Visit/security/cyber-attacks/356417/trump-confirms-cyber-attacks-on-russia-election-trolls
cyber attacks

Trump confirms US cyber attack on Russia election trolls

13 Jul 2020