{"id":23989,"date":"2018-08-15T10:31:39","date_gmt":"2018-08-15T09:31:39","guid":{"rendered":"http:\/\/www.intelligentcio.com\/eu\/?p=23989"},"modified":"2018-08-15T10:32:16","modified_gmt":"2018-08-15T09:32:16","slug":"link11-research-ddos-attack-volumes-increased-by-50-in-q2-2018","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/eu\/2018\/08\/15\/link11-research-ddos-attack-volumes-increased-by-50-in-q2-2018\/","title":{"rendered":"Link11 research: DDoS attack volumes rose by 50% in Q2 2018"},"content":{"rendered":"<p>Link11, a leader in cloud-based anti-DDoS protection, has released its <em>Q2 DDoS Report<\/em> revealing that attack volumes increased by 50% to an average of 3.3 Gbps during May, June and July 2018.<\/p>\n<p>This is compared to 2.2 Gbps during the previous quarter. Attacks are also becoming increasingly complex, with 46% of incidents using two or more vectors.<\/p>\n<p>While attack volumes increased, the Link11 Security Operation Center (LSOC) recorded a 36% decrease in the overall number of attacks.\u00a0 There was a total of 9,325 attacks during the quarter \u2013 an average of 102 attacks per day.<\/p>\n<p>While the number of attacks decreased overall \u2013 possibly as a result of DDoS-as-a-service website Webstresser being closed down following an international police operation, both the scale and complexity of the attacks increased. The LSOC registered a 50% increase in hyper-scale attacks (80 Gbps+). The most complex attacks seen used 13 vectors in total.<\/p>\n<p>The report revealed that threat actors targeted organisations most frequently between 4pm CET and midnight Saturday through to Monday, with businesses in the e-commerce, gaming, IT hosting, finance, and entertainment\/media sectors being the most affected.<\/p>\n<p>Aatish Pattni, Regional Director UK and Ireland for Link11, said: \u201cAttacks in Q2 2018 continued to grow in scale and complexity, despite the successful shutting-down of the Webstresser DDoS-for-hire service in late April.\u00a0 Nearly half of attacks were multi-vector, making them harder to defend against and, with the rapid growth in \u2018hyper attacks\u2019 with volumes of over 80 Gbps, we must now consider these large, complex attacks to be the new normal.<\/p>\n<p>\u201cIt\u2019s only a matter of time until a new DDoS-for-hire service emerges to replace Webstresser, so attacks will inevitably increase over the coming months. Given the scale of the threat that organisations are facing, and the fact that the attacks are deliberately aimed at causing maximum disruption, it\u2019s clear that businesses need to deploy advanced techniques to protect themselves against DDoS exploits,\u201d added Pattni.<\/p>\n<p>The report reveals that high volume attacks were ramped up via Memcached reflection, SSDP reflection and CLDAP, with the peak attack bandwidth recorded at 156 Gbps.\u00a0 Other key findings from the Q2 report include:<\/p>\n<ul>\n<li>The total duration of attacks during the quarter was 1,221 hours<\/li>\n<li>A total of 17% of attacks used two vectors, while 16% used three<\/li>\n<li>The most frequently observed attacks were UDP floods (59.7%), TCP SYN floods (3.3%) and ICMP floods (0.9%)<\/li>\n<li>Memcached was the most used reflection amplification technique, with 773 attacks observed using this technique, highlighting that Memcached is still an issue.\u00a0 The SSDP reflection technique generated the greatest proportion of DDoS packets<\/li>\n<\/ul>\n<p>More information is provided in the full\u00a0Link11 DDoS report for Q2 2018.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Link11, a leader in cloud-based anti-DDoS protection, has released its Q2 DDoS Report revealing that attack volumes increased by 50% to an average of 3.3 Gbps during May, June and July 2018. This is compared to 2.2 Gbps during the previous quarter. Attacks are also becoming increasingly complex, with 46% of incidents using two or [&hellip;]<\/p>\n","protected":false},"author":28,"featured_media":23999,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[4,57,6617,93],"tags":[8608,1095,184,8346,8609,8610,8611],"class_list":["post-23989","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cloud","category-enterprise-security","category-research","category-top-stories","tag-aatish-pattni","tag-anti-ddos","tag-ddos","tag-link11","tag-lsoc","tag-regional-director-uk-and-ireland","tag-webstresser"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/23989","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/users\/28"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/comments?post=23989"}],"version-history":[{"count":2,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/23989\/revisions"}],"predecessor-version":[{"id":23998,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/23989\/revisions\/23998"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media\/23999"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media?parent=23989"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/categories?post=23989"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/tags?post=23989"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}