8

Verisign Q2 2015 DDoS Trends

Embed Size (px)

Citation preview

Page 1: Verisign Q2 2015 DDoS Trends
Page 2: Verisign Q2 2015 DDoS Trends

2

Executive Summary

Page 3: Verisign Q2 2015 DDoS Trends

3

Executive Summary

Largest Volumetric Attack in Q2

• Verisign defended a User Datagram Protocol (UDP) flood with a mix of Network Time

Protocol (NTP) and Simple Service Discovery Protocol (SSDP) traffic that targeted the

Media and Entertainment industry and peaked at 82 Gbps and 22 Mpps.

Primary Attack Vector Used in Q2

• UDP floods consisting of NTP and SSDP traffic.

Trend to Watch – DD4BC

• Verisign’s customer base saw increased activity from the DDoS For Bitcoin (DD4BC)

attacker group in the form of ransom threats. While most attacks ranged between one to

five Gbps, Verisign mitigated attacks by this group peaking at 25 Gbps in July 2015

(outside of the Q2 period).

Page 4: Verisign Q2 2015 DDoS Trends

4

Mitigations by Attack Size

• Attacks over 5 Gbps made up 18% of all attacks

• 20% of attacks were from 1 to 5 Gbps

• The under 1 Gbps category saw an increased percentage of smaller

attacks compared to previous quarters

• Almost 1/3 targeted the Financial industry, driven in part by the DD4BC

campaign and low-level application layer attacks

Mitigation Peaks by Quarter

Page 5: Verisign Q2 2015 DDoS Trends

5

Mitigations by Vertical• IT Services / Cloud / SaaS experienced the largest volume of attacks in Q2

• Over 1/3 of all attacks

• Peaked at 80 Gbps and 11 Mpps

• Financial was the 2nd most targeted industry

• 22% of attacks mitigated by Verisign

• Up from 18% in Q1 2015

• Largely driven by the DD4BC attacker group

• Media and Entertainment industry remains heavily targeted

• 20% of mitigations

• Up from 12% in Q1 2015

• Verisign saw increased activity against the Telecom industry

Mitigation by Industry

Page 6: Verisign Q2 2015 DDoS Trends

6

Feature: The DD4BC Threat Campaign

One of the most prolific cyber-attack stories from Q2 was that of DD4BC, a small

group of people that conducted extortion operations globally against at least

three dozen known targets – and countless unknown – in industries including

Banking, Exchanges (Bitcoin specifically) and Gaming.

Page 7: Verisign Q2 2015 DDoS Trends

Visit www.Verisign.com/ddostrends

to download a copy

7

Read the Full Report

Page 8: Verisign Q2 2015 DDoS Trends

© 2015 VeriSign, Inc. All rights reserved. VERISIGN and other trademarks, service marks, and designs are registered or unregistered trademarks of

VeriSign, Inc. and its subsidiaries in the United States and in foreign countries. All other trademarks are property of their respective owners.