DDoS-for-Hire Preys Upon SaaS Apps such as Joomla
25/02/2015
Akamai Contacts Rob Morton
Media Relations
617-444-3641
rmorton@akamai.com
or
Tom Barth
Investor Relations
617-274-7130
tbarth@akamai.com
New DDoS attack and tools use Google Maps plugin as proxy to hide attacker identity
Threat advisory shares DDoS mitigation to help enterprises stop DDoS attacks
Cambridge, Mass. February 25, 2015 Akamai Technologies, Inc. (NASDAQ: AKAM), the leading provider of cloud services for delivering, optimizing and securing online content and business applications, today released, through the companys Prolexic Security Engineering & Research Team (PLXsert) in collaboration with PhishLabs R.A.I.D (Research, Analysis, and Intelligence Division), a new cybersecurity threat advisory. The advisory alerts enterprises and Software-as-a-Service (SaaS) providers of attackers using Joomla servers with a vulnerable Google Maps plugin installed as a platform for launching distributed denial of service (DDoS) attacks. The advisory is available for download from www.stateoftheinternet.com/joomla-reflection.
Vulnerabilities in web applications hosted by Software-as-a-Service providers continue to provide ammunition for criminal entrepreneurs. Now they are preying on a vulnerable Joomla plugin for which theyve invented a new DDoS attack and DDoS-for-hire tools, said Stuart Scholly, senior vice president and general manager, Security Business Unit, Akamai. This is one more web application vulnerability in a sea of vulnerabilities - with no end in sight. Enterprises need to have a DDoS protection plan in place to mitigate denial of service traffic from the millions of cloud-based SaaS servers that can be used for DDoS.
Vulnerability in Google Maps plugin for Joomla enables DDoS attacks
A known vulnerability in a Google Maps plugin for Joomla allows the plugin to act as a proxy. A proxy is an intermediary server that processes a request and returns the result on behalf of someone else. The vulnerable Google Maps plugin allows Joomla servers that use it to be used as a proxy. Attackers spoof (fake) the source of the requests, causing the results to be sent from the proxy to someone else - their denial of service target. The true source of the attack remains unknown, because the attack traffic appears to come from the Joomla servers.
With cooperation from PhishLabs R.A.I.D, PLXsert matched DDoS signature traffic originating from multiple Joomla sites, which indicates vulnerable installations are being used en masse for reflected GET floods, a type of DDoS attack. Observed attack traffic and data suggest the attack is being offered on known DDoS-for-hire sites.
PLXsert was able to identify more than 150,000 potential Joomla reflectors on the Internet. Although many of the servers appear to have been patched, reconfigured, locked or have had the plugin uninstalled, others remain vulnerable to use in this DDoS attack.
Details of a mitigated DDoS attack
PLXsert mitigated a DDoS attack of this type on behalf of an Akamai customer in November. The majority of the top attacking IP addresses originated from Germany. The same IP addresses that participated in this attack have participated in DDoS attacks against other Akamai customers in the industries of hosting, entertainment and consumer goods.
Multi-layered DDoS mitigation protects against reflection DDoS attacks
Refection-based DDoS attacks of many types are popular at this time. In the fourth quarter of 2014, Akamais PLXsert observed 39 percent of all DDoS attack traffic employed reflection techniques. Reflection DDoS attacks each take advantage of an Internet protocol or application vulnerability that allows DDoS attackers to reflect malicious traffic off a third-party server or device, hiding their identities and amplifying the amount of attack traffic in the process.
Cloud-based DDoS attack mitigation can combat this problem to protect organizations from malicious traffic. Edge-based security and scrubbing centers stop DDoS attack traffic long before it affects a clients website or data center.
Get the Joomla Reflection DDoS-for-Hire Threat Advisory to learn more
In the advisory, PLXsert shares its analysis and details, including:
Use of the GET flood in Joomla reflection
What to look for: Three sample payloads
Attacks from the DAVOSET DDoS tool
Attacks from the UFONet DDoS tool
GET flood requests observed during an attack
Geographical distribution of source traffic
Three DDoS mitigation procedures to stop DDoS attacks of this type
A complimentary copy of the threat advisory is available for download at www.stateoftheinternet.com/joomla-reflection.
About PhishLabs
PhishLabs is the leading provider of cybercrime protection and intelligence services that fight back against online threats and reduce the risk posed by phishing, malware, distributed denial-of-service (DDoS) and other cyber-attacks. The company fights back against cybercrime by detecting, analyzing and proactively dismantling the systems and illicit services cybercriminals depend on to attack businesses and their customers. With a fixed-price service model that ensures alignment with client goals, the company partners with businesses to stop account takeover attacks, reduce online fraud and prevent the loss of customer trust.
To learn more about PhishLabs, visit http://www.phishlabs.com or email info@phishlabs.com
About Akamai
Akamai is the leading provider of cloud services for delivering, optimising and securing online content and business applications. At the core of the Companys solutions is the Akamai Intelligent Platform providing extensive reach, coupled with unmatched reliability, security, visibility and expertise. Akamai removes the complexities of connecting the increasingly mobile world, supporting 24/7 consumer demand, and enabling enterprises to securely levera
LINK: | http://uk.akamai.com/html/about/press/releases/2015/press-022515-2.htm... |
See more stories from akami |
Most recent headlines
26/12/2024
Cheers to 2024: GeForce NOW Recaps Year of Ultimate Cloud Gaming
This GFN Thursday wraps up another incredible year for cloud gaming. Take a look back at the top games and new features that made 2024 a standout for GeForce NO...
24/12/2024
PARTICIPATE AT SERIES MANIA FORUM 2025
The National Film and Video Foundation (NFVF) is calling for applications from South African film and television filmmakers to be part of the NFVF's delegat...
24/12/2024
FCC Fines Paramount Global $244,952 for Emergency Alert Violations
WASHINGTON, D.C. The Federal Communications Commission Enforcement Bureau said Paramount Global is being fined $244,952 for violations of emergency alerting rul...
24/12/2024
Streamer Carnegie Hall+ Features Holiday Programming and Music
NEW YORK Carnegie Hall's video-streaming channel, Carnegie Hall+, said it will celebrate the holiday season by offering a wide selection of holiday-themed o...
24/12/2024
PlayersTV Acquires Cloud Media Center
LOS ANGELES PlayersTV, an athlete and fan-owned media company, has announced the acquisition of Cloud Media Center, an AI-driven sports adtech and media distrib...
24/12/2024
The Best Playlists of 2024
The Best Playlists of 2024 The top playlists we created in 2024, from dad rock to dembow. By Tara Bellucci December 23, 2024 Image by Kelly Davidson Tak...
24/12/2024
From Generative to Agentic AI, Wrapping the Year's AI Advancements
Editor's note: This post is part of the AI Decoded series, which demystifies AI by making the technology more accessible, and showcases new hardware, softwa...
23/12/2024
Broadcast and the IT industry: an inevitable evolution?
At IBC2024, Grass Valley CTO Ian Fletcher told attendees at GV Forum that broadcast is now an IT industry. During our discussions at the show, TVBEurope heard v...
23/12/2024
Cracking creation: Fun facts from Wallace & Gromit: Vengeance Most Fowl
According to co-director Nick Park, the production team embraced technology to help create the iconic duos latest adventure By Jenny Priestley Published: Dec...
23/12/2024
Mapping the great wave: how Lux Aeterna produced data-centric visuals for Tsunami: Race Against Time
VFX house Lux Aeterna used wave height data from the National Oceanic & Atmosphe...
23/12/2024
DAZN acquires Australia's Foxtel in $2.2 billion deal
We are committed to supporting and investing in Foxtel's television and streaming services, across both sports and entertainment, using our world-leading te...
23/12/2024
Looking back at 2024: the industry trends that stood out
From AI to IP, the cloud to virtual production, key industry executives take a look back at some of the biggest trends that impacted the media and entertainment...
23/12/2024
BOOST GRAPHICS THE SPECIALIST INTERNATIONAL GRAPHICS SUBS...
Boost Graphics, the specialist international graphics and virtual production subsidiary of EMG / Gravity Media, the leading force in production and content & me...
23/12/2024
LucidLink Earns TPN Gold Certification to Advance Secure...
LucidLink, the leading storage collaboration platform revolutionizing how global teams work, proudly announces its achievement of the prestigious Trusted Partne...
23/12/2024
Mediagenix Welcomes Bruno Langlais as Business Developmen...
Mediagenix, a leader in software solutions for content strategy, content value management, and content scheduling, announces the appointment of Bruno Langlais a...
23/12/2024
NextGen TV Live Spanish Captions Debut on PMVG Test Bed S...
WCTEPublic Media Venture Group (PMVG) has announced that it is now providing real-time translation of closed captioning from English to Spanish on PMVG's Ne...
23/12/2024
Deltatre Appoints Charlie Mitchell to Head Up Sports in t...
Deltatre, the tech company behind the media and sporting moments that matter, has appointed Charlie Mitchell as Head of Sports for the Americas. Charlie will sp...
23/12/2024
Media Excel Welcomes Industry Veteran Matthew Goldman to...
Media Excel, a global leader in real-time video solutions, proudly announces the appointment of Matthew Goldman to its Technical Advisory Board. A distinguished...
23/12/2024
Disguise Nikon and MRMC bring Studio Extreme immersive ac...
Disguise the company behind the virtual production technology used on commercials for Apple Music and Lenovo, as well as feature film Daddio starring Sean Pen...
23/12/2024
Moments Lab and Bitcentral Partner for AI-Powered Content...
Leading AI and video search company Moments Lab is pleased to announce its integration with Bitcentral. The integration enables Bitcentral Oasis MAM users to en...
23/12/2024
ABC Commercial Partners With Amagi to Launch Suite of FAS...
Amagi, the global leader in cloud-based SaaS technology for broadcast and connected TV (CTV), today announced that ABC Commercial has partnered with Amagi to la...
23/12/2024
Digital Alert Systems Vice President of Global and Govern...
Digital Alert Systems, the global leader in emergency communications solutions for media providers, today announced that Ed Czarnecki, the company's vice pr...
23/12/2024
New Matthews Multipurpose Adapter for Moving Lights
Matthews Studio Equipment, known for the heftiest hardware, has a new solution to simplify mounting live production moving lights to standard grip equipment. Th...
23/12/2024
Matthews Studio Equipment Debuts RoadBags
Matthews Studio Equipment expands its trusted Road-line with the launch of RoadBags, durable fillable sandbags available in three sizes. Whether in the studio o...
23/12/2024
Sport Lisboa e Benfica Enhances Stadium Communications wi...
Sport Lisboa e Benfica, one of Portugal's most prestigious football clubs, has partnered with Clear-Com to upgrade the communications system at the Est dio...
23/12/2024
Black Box at Hamburg Open 2025
At stand B6.734, Black Box will showcase its Emerald KVM-over-IP solution, which enables smarter studio control with secure remote access from anywhere, along...
23/12/2024
OOONA Partners with Audio Description Associates
OOONA, a leading provider of professional management and production tools for the media localization industry, announced today a partnership with Audio Descript...
23/12/2024
Dunk The Halls: ESPN Refines Animated Altcast Tech and Ops with a Helping Hand From Mickey and Minnie
Dunk The Halls: ESPN Refines Animated Altcast Tech and Ops with a Helping Hand F...
23/12/2024
Leading Through Change: In Conversation with Michal Masset, Chief People Officer
With the holiday season in full swing, we are delighted to bring you a special digital event, Leading Through Change with Technicolor Group's Chief People O...
23/12/2024
Netflix Kicks Off NFL Christmas Games: Behind the Scenes With the Streaming Giant and Its Production Partners
Netflix Kicks Off NFL Christmas Games: Behind the Scenes With the Streaming Gian...
23/12/2024
Friendly Confines Go Frozen: TNT Sports Augments 2024 NHL Winter Classic Coverage With NHL DataCast Powered by AWS, NHL in ASL Alternative Offerings
Friendly Confines Go Frozen: TNT Sports Augments 2024 NHL Winter Classic Coverag...
23/12/2024
ESPN's Tina Thornton on Producing The Simpsons Funday Football, Upcoming Dunk the Halls Alternative Broadcast on Christmas Day
ESPN's Tina Thornton on Producing The Simpsons Funday Football, Upcoming Dun...
23/12/2024
Dunk The Halls: ESPN Refine Animated Altcast Tech and Ops with a Helping Hand From Mickey and Minnie
Dunk The Halls: ESPN Refine Animated Altcast Tech and Ops with a Helping Hand Fr...
23/12/2024
NFL Christmas Gameday Live Comes to Netflix With Blimps, Hot Cocoa Trucks and Two Superstar Performances
Back to All News NFL Christmas Gameday Live Comes to Netflix With Blimps, Hot C...
22/12/2024
News Corp Announces Agreement to Sell Foxtel to DAZN for Enterprise Value of A$3.4 Billion
News Corp Announces Agreement to Sell Foxtel to DAZN for Enterprise Value of A$3...
22/12/2024
Netflix Showcases Global Anime Hits and New Releases at Jump Festa 2025
Back to All News Netflix Showcases Global Anime Hits and New Releases at Jump Festa 2025 Entertainment 22 December 2024 GlobalJapan Link copied to clipboar...
21/12/2024
L3Harris Thrusters Position NASA Probe for Closest Approaches to the Sun
Artist's concept of the Parker Solar Probe spacecraft approaching the sun. Credit: NASA/Johns Hopkins APL...
21/12/2024
Dallas Mavericks Roll Out New Streaming Platform
DALLAS and NEW YORK The NBA's Dallas Mavericks, working with Endeavor Streaming, Softtek and the NBA, have launched an official streaming platform for MavsT...
21/12/2024
Former FCC Chair Expresses Concern' Over Musk's Influence
As tech billionaire Elon Musk takes an increasingly high-profile policy role in the incoming Trump administration, a former Federal Communications Commission ch...
21/12/2024
Gray Media Renews Comscore Measurement Deal
RESTON, Va. Comscore has announced that it has renewed and expanded its measurement deal with Gray Media....
21/12/2024
Sinclair, Gray Media to Broadcast Columbus Blue Jackets NHL Games
The Columbus Blue Jackets, Sinclair and FanDuel Sports Network have signed a deal that will allow Sinclair and Gray Media stations in select markets to simulcas...
21/12/2024
Our Favorite Songs of 2024
Our Favorite Songs of 2024 Explore a playlist featuring some of the top songs of the year, as picked by members of the Berklee community. By Tara Bellucci De...
21/12/2024
Berklee Wrapped 2024: Our Top News and Stories
Berklee Wrapped 2024: Our Top News and Stories Take a look at some of our best stories of the year, including announcing our next president, hosting Andr 300...
21/12/2024
Alumna Allison de Groot Awarded 2024 Steve Martin Banjo Prize
Alumna Allison de Groot Awarded 2024 Steve Martin Banjo Prize De Groot, a former student of the American Roots Music Program, was recognized for her unique so...
20/12/2024
Thinking of Launching a Podcast? Let Our New Guide Show You How
Podcasting has become one of the most popular ways to tell stories and connect with audiences, but getting started can be intimidating, especially when it comes...
20/12/2024
2025 Sundance Film Festival Reveals 92 Projects for Feature Film and Episodic Programs
Top L-R: The Legend of Ochi, Rabbit Trap, East of Wall, Seeds Center Row L-R: Re...
20/12/2024
Spotify Presents the First-Ever Billions Club Live Show With The Weeknd
For any song to rack up billions of streams is an impressive accomplishment, but being a part of Spotify's Billions Club is something The Weeknd knows quite...
20/12/2024
Curl Up Under the Mistletoe With These Holiday Romance Audiobooks
It's the most wonderful time of the year, but if you seek an escape, pop in your headphones and enjoy the soothing sounds of a story. And this season, a rom...
20/12/2024
Revisit 2024 With Some of Your Favorite Podcasts From The Ringer
As the year draws to a close, Spotify's The Ringer is celebrating the best of 2024 with an exciting lineup of retrospective podcast episodes. This December,...
20/12/2024
HPA Award Delivered To New Zealand!
HPA Award Committee co-founder Carolyn Giardina was in New Zealand recently and had the opportunity present the Outstanding Visual Effects - Live Action Feature...