Key Country Level DDoS Attack Statistics From Jan 1, 2022 to June 30, 2022 / ISSUE 9: FINDINGS FROM 1ST HALF 2022

Flag of Japan

Japan

Despite a slight decrease in DDoS attack frequency toward the end of 2021, adversaries unfortunately ramped up their nefarious activities in 1H 2022. Not content to simply rest on their laurels, attackers increasingly used powerful DDoS-capable botnets to launch TCP-based direct path attacks and often tied them to sociopolitical and entertainment events – think war, politics, religion, and sports.

The end result is that adversaries are constantly innovating, trying new attack methods, vectors, and motivations. EMEA experienced a 7 percent increase in DDoS attacks, with many of those tied to the conflict between Russia and Ukraine. The APAC region experienced about 8,600 DDoS attacks per day – or a new attack launched every 10 seconds. The LATAM region experienced an increase of 125 percent in botnet-based TCP floods. And North America experienced 1.04 million DDoS attacks in the six-month period, with adversaries increasingly targeting cloud-related service providers and even primary schools.

Max Multivector Attack

Max number of vectors seen in a single attack

17

Attack Vectors Used

1. chargen Amplification
2. CLDAP Amplification
3. DNS Amplification
4. L2TP Amplification
5. mDNS Amplification
6. memcached Amplification
7. MS SQL RS Amplification
8. NetBIOS Amplification
9. NTP Amplification
10. Quake Amplification
11. RIPv1 Amplification
12. rpcbind Amplification
13. SNMP Amplification
14. SSDP Amplification
15. TCP ACK
16. UDP
17. Unreal-tournament Amplification

Top Attack Vectors

Ta

TCP ACK

Number of Attacks

30,811

Tk

TCP SYN/ACK Amp

Number of Attacks

14,042

Tr

TCP RST

Number of Attacks

12,328

Ts

TCP SYN

Number of Attacks

10,484

Dn

DNS Amp

Number of Attacks

7,171

Top Ten Vertical Industries Under Attack

The following industry chart shows the most targeted sectors in 1H 2022 by number of attacks.

Rank Vertical Frequency Max Attack Max Impact Average Duration
1
Electronic Shopping and Mail-Order Houses
7,020 85.49 Gbps 77.5 Mpps 16 Minutes
2
Data Processing Hosting and Related Services
5,380 107.03 Gbps 49.83 Mpps 56 Minutes
3
Wired Telecommunications Carriers
4,874 66.61 Gbps 5.78 Mpps 78 Minutes
4
Electronic Computer Manufacturing
314 143.52 Gbps 74.1 Mpps 21 Minutes
5
Full-Service Restaurants
194 4.16 Gbps 0.36 Mpps 288 Minutes
6
Marketing Consulting Services
159 0.03 Gbps 0.05 Mpps 15 Minutes
7
All Other Telecommunications
129 9.5 Gbps 4.14 Mpps 24 Minutes
8
cell phone icon Wireless Telecommunications Carriers (except Satellite)
29 7.73 Gbps 1.09 Mpps 11 Minutes
9
Computer Storage Device Manufacturing
20 4.53 Gbps 4.81 Mpps 27 Minutes
10
Industrial Supplies Merchant Wholesalers
18 2.4 Gbps 1.76 Mpps 180 Minutes