Home / News

Average DDoS Attacks Now Large Enough to Take Most Organizations Completely Offline

Arbor Networks today released its Global DDoS Attack Data for the first half of 2016 affirming continued escalation in both the size and frequency of denial-of-service (DDoS) attacks.

— “DDoS remains a commonly used attack type due to the ready availability of free tools and inexpensive online services that allow anyone with a grievance and an internet connection to launch an attack.”

— Arbor’s data is gathered through the Active Threat Level Analysis System (ATLAS), a collaborative partnership between the company and over 330 service provider customers who share anonymous traffic data with Arbor. ATLAS has recorded the following:

  • An average of 124,000 events per week over the last 18 months.
  • A 73% increase in peak attack size over 2015, to 579Gbps.
  • 274 attacks over 100Gbps monitored in 1H 2016, versus 223 in all of 2015.
  • 46 attacks over 200Gbps monitored in 1H 2016, versus 16 in all of 2015.
  • USA, France and Great Britain are the top targets for attacks over 10Gbps.

— Large DDoS attacks do not require the use of reflection amplification techniques: “LizardStresser, an IoT botnet was used to launch attacks as large as 400Gbps targeting gaming sites worldwide, Brazilian financial institutions, internet service providers (ISPs) and government institutions.”

— Average is large enough: “A 1 Gbps DDoS attack is large enough to take most organizations completely offline. Average attack size in 1H 2016 was 986Mbps, a 30% increase over 2015. Average attack size is projected to be 1.15Gbps by end of 2016.”

— ATLAS Digital Attack Map: Shown below is a snapshot of a visualization of global attack traffic created in collaboration with Google Ideas.  Source: Arbor Networks / 19 July 2016 / View Live

By CircleID Reporter

CircleID’s internal staff reporting on news tips and developing stories. Do you have information the professional Internet community should be aware of? Contact us.

Visit Page

Filed Under

Comments

Comment Title:

  Notify me of follow-up comments

We encourage you to post comments and engage in discussions that advance this post through relevant opinion, anecdotes, links and data. If you see a comment that you believe is irrelevant or inappropriate, you can report it using the link at the end of each comment. Views expressed in the comments do not represent those of CircleID. For more information on our comment policy, see Codes of Conduct.

CircleID Newsletter The Weekly Wrap

More and more professionals are choosing to publish critical posts on CircleID from all corners of the Internet industry. If you find it hard to keep up daily, consider subscribing to our weekly digest. We will provide you a convenient summary report once a week sent directly to your inbox. It's a quick and easy read.

I make a point of reading CircleID. There is no getting around the utility of knowing what thoughtful people are thinking and saying about our industry.

VINTON CERF
Co-designer of the TCP/IP Protocols & the Architecture of the Internet

Related

Topics

Cybersecurity

Sponsored byVerisign

Brand Protection

Sponsored byCSC

DNS

Sponsored byDNIB.com

Threat Intelligence

Sponsored byWhoisXML API

Domain Names

Sponsored byVerisign

New TLDs

Sponsored byRadix

IPv4 Markets

Sponsored byIPv4.Global