Vulnerabilities / Threats

5/10/2011
12:34 PM
Connect Directly
Google+
Twitter
RSS
E-Mail
50%
50%

DDoS Attacks Evolve And Spread

Nearly two-thirds of organizations have been DDoS'ed in the past year--even smaller organizations, new VeriSign report finds.

What struck VeriSign executive Ben Petro most in his company's survey on distributed denial-of-service (DDoS) trends within organizations was the concrete company that reported being hit with a DDoS attack in the past year: In other words, DDoS isn't just for high-profile attacks anymore.

"I can only theorize why a concrete company would be DDoS'ed when it has virtually no Web presence ... who is attacking this company?" says Petro, senior vice president of VeriSign's network intelligence and availability group.

According to VeriSign's report, released today, 63 percent of midsize to large organizations say they suffered at least one DDoS attack in the past year, and 11 percent, six or more. Why the big spike in a not-so-new form of attack?

While hacktivist group Anonymous' wave of DDoS attacks on high-profile targets, such as MasterCard, HBGary, PayPal, and Visa, during the past few months might have renewed enterprise concerns about these types of attacks, Anonymous doesn't directly account for the major surge in DDoS threats, security experts say. "Anonymous is not a significant player based on the numbers. They get a lot of press and hit a lot of high-profile sites, but they don't hit at the frequency that could make the kind of dent on these numbers," says Jose Nazario, senior manager of security research for Arbor Networks, which studies DDoS attacks and trends.

Nazario says his firm sees small to midsize companies getting hit with DDoSes for extortion purposes. "[The attackers] know they can hit broadly and make a few thousand bucks here and there because SMBs can't defend themselves because it's too costly," he says.

DDoS is definitely on companies' radar screens today. Of the 225 U.S. IT decision-makers surveyed by VeriSign, nearly 80 percent are either extremely or very concerned about DDoS attacks hitting their organizations. Some 67 percent say they expect the strength and frequency of these attacks to either increase or stay flat in the next two years.



Read the rest of this article on Dark Reading.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Kaspersky Lab Seeks Injunction Against US Government Ban
Jai Vijayan, Freelance writer,  1/19/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
The Year in Security: 2017
A look at the biggest news stories (so far) of 2017 that shaped the cybersecurity landscape -- from Russian hacking, ransomware's coming-out party, and voting machine vulnerabilities to the massive data breach of credit-monitoring firm Equifax.
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-0290
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

CVE-2016-10369
Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

CVE-2016-8202
Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

CVE-2016-8209
Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

CVE-2017-0890
Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.