DDoS Attacks - Surge in Frequency and Volume Reported
Basically, DDoS attacks are when many computers overwhelm a website to make it unusable.
DDoS attacks have doubled in the second half of 2025, reaching record highs. Technology, finance, and gaming sectors are the most affected. Understanding these trends is crucial for effective defense strategies.
What Happened
In the second half of 2025, DDoS attacks surged, reaching unprecedented levels. According to a report by Gcore, the number of registered DDoS attacks doubled from the first half of the year. With approximately 2.25 million attacks recorded from July to December, this marked a significant escalation in cyber threats. Overall, 2025 saw a staggering total of 3.42 million DDoS attacks, a 90% increase compared to 2024.
The volume of these attacks also saw a dramatic rise. In 2025, peak attack volumes reached up to 12 terabits per second (Tbit/s), compared to just 2.2 Tbit/s in 2024. This represents an increase of about 550%, indicating that attackers are using more powerful methods to disrupt services.
Who's Being Targeted
The report highlights that technology companies were the most affected, accounting for 34% of the attacks. Financial services followed closely at 20%, with gaming companies also being heavily targeted at 19%. The geographical distribution of attacks showed that 75% of the traffic originated from North and South America, particularly from countries like Mexico, Brazil, and the USA.
Interestingly, application-layer attacks, which are more targeted, were reported globally, including in regions like Germany. This indicates that attackers are not only focusing on volume but also on precision, aiming at critical business functions.
Tactics & Techniques
Gcore's analysis reveals a shift in the structure of DDoS attacks. Most attacks (about 82%) were directed at the network layer, with a significant portion lasting less than a minute. The majority of these attacks utilized UDP floods, a technique that overwhelms the target with traffic.
In contrast, application-layer attacks, which accounted for 18% of the total, were more strategic and prolonged. These attacks often targeted APIs, authentication processes, and backend systems, employing automated bots to exploit vulnerabilities in business logic. This evolution in tactics suggests that attackers are becoming more sophisticated in their approach.
Defensive Measures
Organizations must adapt to this rising threat landscape. Implementing robust DDoS mitigation strategies is essential. This includes investing in advanced network security solutions that can detect and respond to unusual traffic patterns. Regularly updating security protocols and training staff on recognizing potential threats can also enhance defenses.
Additionally, businesses should consider collaborating with cybersecurity firms that specialize in DDoS protection. By staying informed about the latest attack trends and adapting their defenses accordingly, organizations can better safeguard their operations against these increasingly aggressive cyber threats.
CSO Online