Kaspersky Research Finds DDoS Sttacks in Q1 2021 Return to Pre-Pandemic Numbers
May 11, 2021
PRESS RELEASE
Woburn, MA – May 10, 2021 — According to data from Kaspersky DDoS Prevention, in Q1 2021, the number of DDoS attacks dropped by 29% compared to the same period in 2020, but increased by 47% compared to Q4 2020. This growth is explained by an unusual spike in January which accounted for 43% of all attacks in the quarter.
In early 2021, many people were still working remotely and spending their leisure time at home. Therefore, cybercriminals conducted DDoS attacks against entities that users need more, like telecom providers, so that their clients experienced issues with their internet connection or online gaming sites. Despite the remaining attention on such resources, statistics show the overall DDoS situation is becoming stable.
Kaspersky experts explain the drop in attacks compared to the same quarter last year by the abnormal activity at the beginning of 2020. Due to a sudden shift to remote work, corporate VPN gateways and web resources, such as mail or corporate knowledge bases that were previously available only inside an organization, became a target for DDoS attacks. Within the year, businesses mostly implemented protection for these parts of IT infrastructure. Given this, attacks against these web assets may have become less effective, and the number of DDoS attacks dropped, so by February and March 2021, the number of attacks returned back to a pre-lockdown benchmark.
Comparison of number of DDoS attacks by months. Data for 2019 is taken as 100%
January 2021 stands out in terms of the number of DDoS attacks. Statistics from Kaspersky DDoS Intelligence system that intercepts and analyzes commands received by bots from command and control servers highlighted this spike. For instance, on January 10 and 11, the number of registered attacks exceeded 1,800 and for several days in the month it reached more than 1,500.
“In general, the first quarter of 2021 was rather quiet, apart from surge in DDoS activity in January,” comments Alexey Kiselev, business development manager on the Kaspersky DDoS Protection team. “That surge may have been caused by a fall in cryptocurrency prices that made some malefactors repurpose infected devices in botnets to send junk traffic instead of mining currency. So, despite an overall decline in Q1, we recommend protecting web resources from DDoS attacks. Because, as we can see, cybercriminals driven by financial motives can easily change their tactics depending on the circumstances.”
To stay protected against DDoS attacks, Kaspersky experts offer the following recommendations:
Maintain web resource operations by assigning specialists who understand how to respond to DDoS attacks
Validate third-party agreements and contact information, including those made with internet service providers. This helps teams quickly access agreements in case of an attack
Implement professional solutions to safeguard your organization against DDoS attacks. For example, Kaspersky DDoS Protection combines Kaspersky’s extensive expertise in combating cyberthreats and the company’s unique in-house developments
Read the full report on Securelist.
You May Also Like
Securing Code in the Age of AI
April 24, 2024Beyond Spam Filters and Firewalls: Preventing Business Email Compromises in the Modern Enterprise
April 30, 2024Key Findings from the State of AppSec Report 2024
May 7, 2024Is AI Identifying Threats to Your Network?
May 14, 2024Where and Why Threat Intelligence Makes Sense for Your Enterprise Security Strategy
May 15, 2024
Black Hat USA - August 3-8 - Learn More
August 3, 2024Cybersecurity's Hottest New Technologies: What You Need To Know
March 21, 2024