Threat IntelHIGH

DDoS Attacks - Surge in Frequency and Volume Reported

CSCSO Online
DDoSGcorecyber attacksnetwork securityapplication security
🎯

Basically, DDoS attacks are when many computers overwhelm a website to make it unusable.

Quick Summary

DDoS attacks have doubled in the second half of 2025, reaching record highs. Technology, finance, and gaming sectors are the most affected. Understanding these trends is crucial for effective defense strategies.

What Happened

In the second half of 2025, DDoS attacks surged, reaching unprecedented levels. According to a report by Gcore, the number of registered DDoS attacks doubled from the first half of the year. With approximately 2.25 million attacks recorded from July to December, this marked a significant escalation in cyber threats. Overall, 2025 saw a staggering total of 3.42 million DDoS attacks, a 90% increase compared to 2024.

The volume of these attacks also saw a dramatic rise. In 2025, peak attack volumes reached up to 12 terabits per second (Tbit/s), compared to just 2.2 Tbit/s in 2024. This represents an increase of about 550%, indicating that attackers are using more powerful methods to disrupt services.

Who's Being Targeted

The report highlights that technology companies were the most affected, accounting for 34% of the attacks. Financial services followed closely at 20%, with gaming companies also being heavily targeted at 19%. The geographical distribution of attacks showed that 75% of the traffic originated from North and South America, particularly from countries like Mexico, Brazil, and the USA.

Interestingly, application-layer attacks, which are more targeted, were reported globally, including in regions like Germany. This indicates that attackers are not only focusing on volume but also on precision, aiming at critical business functions.

Tactics & Techniques

Gcore's analysis reveals a shift in the structure of DDoS attacks. Most attacks (about 82%) were directed at the network layer, with a significant portion lasting less than a minute. The majority of these attacks utilized UDP floods, a technique that overwhelms the target with traffic.

In contrast, application-layer attacks, which accounted for 18% of the total, were more strategic and prolonged. These attacks often targeted APIs, authentication processes, and backend systems, employing automated bots to exploit vulnerabilities in business logic. This evolution in tactics suggests that attackers are becoming more sophisticated in their approach.

Defensive Measures

Organizations must adapt to this rising threat landscape. Implementing robust DDoS mitigation strategies is essential. This includes investing in advanced network security solutions that can detect and respond to unusual traffic patterns. Regularly updating security protocols and training staff on recognizing potential threats can also enhance defenses.

Additionally, businesses should consider collaborating with cybersecurity firms that specialize in DDoS protection. By staying informed about the latest attack trends and adapting their defenses accordingly, organizations can better safeguard their operations against these increasingly aggressive cyber threats.

🔒 Pro insight: The dramatic increase in DDoS attacks indicates a shift towards more aggressive tactics, requiring enhanced defensive measures across critical sectors.

Original article from

CSO Online

Read Full Article

Related Pings

HIGHThreat Intel

Threat Intel - Russian Broker Sentenced for Ransomware Role

Aleksei Volkov was sentenced to 81 months for facilitating ransomware attacks, causing millions in losses. His case highlights a crackdown on cybercriminal enablers. Companies must enhance their defenses against such threats.

Help Net Security·
HIGHThreat Intel

Threat Intel - Rogue IP KVMs Exposed by Researchers

Researchers have uncovered vulnerabilities in IP KVMs, revealing their use by criminals, including North Korean operatives. This poses serious risks to security. Organizations must act to secure their systems.

SANS ISC·
HIGHThreat Intel

Cyber Warfare - Dmytro Kuleba Addresses New Frontline

Dmytro Kuleba will address the new cyber frontline at Infosecurity Europe. His insights on Ukraine's hybrid war are crucial for understanding modern cyber threats. This discussion highlights the urgent need for improved cybersecurity collaboration amid rising geopolitical tensions.

Infosecurity Magazine·
HIGHThreat Intel

Threat Intel - Iran's Cameras Turned into Targeting Tool by Israel

Israel has turned Iran's street cameras into a targeting tool, leading to the assassination of Ayatollah Khamenei. This incident highlights the vulnerabilities of surveillance systems in warfare. As surveillance technology proliferates, the risks of exploitation grow, raising urgent security concerns.

SecurityWeek·
HIGHThreat Intel

Threat Intel - APT Hackers Target RDP Servers for Persistence

APT-C-13 hackers are targeting RDP servers to deploy malicious payloads. This stealthy campaign poses significant risks to critical infrastructure and government agencies. Organizations must act quickly to protect their networks from these persistent threats.

Cyber Security News·
HIGHThreat Intel

Threat Intel - Russian Broker Sentenced for Ransomware Role

Aleksei Volkov, a Russian hacker, has been sentenced to prison for selling access to corporate networks. His actions enabled ransomware attacks costing millions. This case highlights the need for stronger cybersecurity measures.

The Register Security·