Key Country Level DDoS Attack Statistics From Jan 1, 2022 to June 30, 2022 / ISSUE 9: FINDINGS FROM 1ST HALF 2022
South Africa
Despite a slight decrease in DDoS attack frequency toward the end of 2021, adversaries unfortunately ramped up their nefarious activities in 1H 2022. Not content to simply rest on their laurels, attackers increasingly used powerful DDoS-capable botnets to launch TCP-based direct path attacks and often tied them to sociopolitical and entertainment events – think war, politics, religion, and sports.
The end result is that adversaries are constantly innovating, trying new attack methods, vectors, and motivations. EMEA experienced a 7 percent increase in DDoS attacks, with many of those tied to the conflict between Russia and Ukraine. The APAC region experienced about 8,600 DDoS attacks per day – or a new attack launched every 10 seconds. The LATAM region experienced an increase of 125 percent in botnet-based TCP floods. And North America experienced 1.04 million DDoS attacks in the six-month period, with adversaries increasingly targeting cloud-related service providers and even primary schools.
Max Multivector Attack
Max number of vectors seen in a single attack
20
Attack Vectors Used
1. ARMS Amplification
2. chargen Amplification
3. CLDAP Amplification
4. DNS
5. DNS Amplification
6. ICMP
7. MS SQL RS Amplification
8. NetBIOS Amplification
9. RDP Amplification
10. rpcbind Amplification
11. SNMP Amplification
12. SSDP Amplification
13. STUN Amplification
14. TCP ACK
15. TCP RST
16. TCP SYN
17. TCP SYN/ACK Amplification
18. TFTP Amplification
19. UDP
20. WS-DD Amplification
Top Attack Vectors
Ta
TCP ACK
Number of Attacks
55,645
Tr
TCP RST
Number of Attacks
39,248
Tk
TCP SYN/ACK Amp
Number of Attacks
39,104
Ts
TCP SYN
Number of Attacks
29,763
Dn
DNS Amp
Number of Attacks
25,973
Top Ten Vertical Industries Under Attack
The following industry chart shows the most targeted sectors in 1H 2022 by number of attacks.
Rank | Vertical | Frequency | Max Attack | Max Impact | Average Duration |
---|---|---|---|---|---|
1 |
Other Computer Related Services
|
35,036 | 151.73 Gbps | 12.69 Mpps | 118 Minutes |
2 |
Insurance Agencies and Brokerages
|
4,451 | 5.72 Gbps | 1.0 Mpps | 226 Minutes |
3 |
Wired Telecommunications Carriers
|
3,705 | 45.5 Gbps | 7.65 Mpps | 295 Minutes |
4 |
Wireless Telecommunications Carriers (except Satellite)
|
3,243 | 82.68 Gbps | 12.78 Mpps | 101 Minutes |
5 |
All Other Support Services
|
444 | 0.01 Gbps | 0.02 Mpps | 8 Minutes |
6 |
Data Processing Hosting and Related Services
|
435 | 26.55 Gbps | 7.9 Mpps | 472 Minutes |
7 |
Electronic Computer Manufacturing
|
209 | 2.22 Gbps | 0.54 Mpps | 516 Minutes |
8 |
Software Publishers
|
62 | 12.16 Gbps | 21.32 Mpps | 31 Minutes |
9 |
All Other Telecommunications
|
47 | 1.19 Gbps | 1.18 Mpps | 15 Minutes |
10 |
Investment Banking and Securities Dealing
|
28 | 1.63 Gbps | 0.15 Mpps | 49 Minutes |