Sony Pixel Power calrec Sony

Q4 2017 Akamai State of The Internet / Security Report Shows Botnets Shift Focus to Credential Abuse

23/02/2018

Q4 2017 Akamai State of The Internet / Security Report Shows Botnets Shift Focus to Credential Abuse DDoS Attacks Remain Steady, Though Increased Scanning From the Mirai Botnet Might Foreshadow Explosive Growth

Cambridge, MA | February 20, 2018

Newly released data that analyzed more than 7.3 trillion bot requests per month found a sharp increase in the threat of credential abuse, with more than 40 percent of login attempts being malicious, according to the Fourth Quarter, 2017 State of the Internet / Security Report released by Akamai Technologies, Inc. (NASDAQ: AKAM). According to the Ponemon Institute, credential stuffing attacks can cost businesses as much as $2.7 million on an annual basis. In addition, Akamai's data further indicates that DDoS attacks remain a consistent threat and the Mirai botnet is still capable of strong bursts of activity.

Akamai researchers have seen recent hacker activity turning to exploit remote code execution vulnerabilities in enterprise-level software to make enterprise systems part of the botnet threat. For example, hackers have been exploiting vulnerabilities in the GoAhead embedded HTTP server-which has 700,000 potential targets-and Oracle WebLogic Server. Aided by the disclosure of Spectre and Meltdown earlier this year, both vulnerabilities open the door to a new wave of attacks, including the surreptitious installation of crypto mining programs that tie up computing resources.

A key motive of attackers has always been financial profit. In the past few years, we have seen adversaries move to more direct methods to achieve that goal such as ransomware, said Martin McKeay, senior security advocate and senior editor, State of the Internet / Security Report. Crypto mining offers attackers the most direct avenue to monetize efforts by putting money immediately into their cryptowallets.

Akamai's findings also confirmed that the total number of DDoS attacks last quarter (Q4 2017) increased 14 percent from the same time last year (Q4 2016). While previous reports from this year showed the intensity of the Mirai botnet fading, Akamai saw a spike of nearly 1 million unique IP addresses from the botnet scanning the Internet in late November, showing that it is still capable of explosive growth.

By the Numbers: Other highlights from Akamai's Fourth Quarter, 2017 State of the Internet / Security Report include:

The hospitality industry suffered as the biggest target of fraudulent credential attacks, with 82 percent of their login attempts being from malicious botnets.

The financial industry saw a sharp increase in the number of DDoS attacks, experiencing 298 DDoS attacks against 37 distinct organizations last quarter.

Application layer DDoS attacks such as GET, PUSH and POST floods increased in volume in Q4 by 115 percent since Q3.

There was a 31 percent increase in DDoS attacks sourcing from the U.S. last quarter (Q4 2017) compared to the same timeframe last year (Q4 2016).

Akamai saw 146 Petabytes of traffic in November and 145 Petabytes in December of bot traffic alone, which translates to approximately 550 Mbps.

Akamai mitigated 4,364 attack events on the routed platform in the fourth quarter of 2017. In total, Akamai experienced 15,965 attack events throughout 2017.

Bot Activity Drives Rising Threat of Credential Stuffing

On a typical day, Akamai monitors more than 2,750 bot requests per second, which accounts for more than 30 percent of all pure web traffic (excluding video streaming) across its platform. While much of that bot activity is legitimate, cybercriminals are increasingly leveraging bot activity for malicious use. For example, many of the botnets traditionally responsible for DDoS attacks are being used to abuse stolen login credentials. Of the 17 billion login requests tracked through the Akamai platform in November and December, almost half (43 percent) were used for credential abuse.

Increased automation and data mining have caused a massive flood of bot traffic to impact websites and Internet services. Although most of that traffic is useful for Internet businesses, cybercriminals are looking to manipulate the powerful volume of bots for nefarious gains, said McKeay. Enterprises need to watch who is accessing their sites to differentiate actual humans from both legitimate and malicious bots. Not all web traffic and not all bots are created equal.

A complimentary copy of the Q4 2017 State of the Internet / Security Report is available for download at akamai.com/stateoftheinternet-security. Learn more about the cost of credential stuffing by registering for a webinar with Dr. Larry Ponemon, founder of Ponemon Institute, on Wednesday, February 28, 2018.

Methodology The Akamai Fourth Quarter, 2017 State of the Internet / Security Report combines attack data from across Akamai's global infrastructure and represents the research of a diverse set of teams throughout the company. The report provides analysis of the current cloud security and threat landscape, as well as insight into attack trends using data gathered from the Akamai Intelligent Platform. The contributors to the State of the Internet / Security Report include security professionals from across Akamai, including the Security Intelligence Response Team (SIRT), the Threat Research Unit, Information Security, and the Custom Analytics group.

About Akamai As the world's largest and most trusted cloud delivery platform, Akamai makes it easier for its customers to provide the best and most secure digital experiences on any device, anytime, anywhere. Akamai's massively distributed platform is unparalleled in scale with over 200,000 servers across 130 countries, giving customers superior performance and threat protection. Akamai's portfolio of web and mobile performance, cloud security, enterprise access, and video delivery solut
LINK: https://www.akamai.com/uk/en/about/news/press/2018-press/akamai-releas...
See more stories from akami

Most recent headlines

13/03/2025

Craft Interview: Jamie McCombs, Audio Consultant / Sr. Audio

Sunday February 9 saw the annual return of the US' biggest television event, the Super Bowl LIX. Jamie McCombs, Fox Sports Audio Consultant / Sr. Audio capt...

13/03/2025

Craft Interview: Paul Sandweiss, Production Sound Mixer/Audio Director

On Sunday March 2, stars across the film industry gathered at the Dolby Theatre in Los Angeles for the 97th Academy Awards. Production Sound Mixer Paul Sandweis...

13/03/2025

Riedel To Showcase New StageLink Smart Edge Devices At 2025 NAB Show

WUPPERTAL, Germany Riedel Communications will feature its new StageLink family of smart edge devices, Smart Audio and Mixing Engine (SAME) and Virtual Smart Pan...

13/03/2025

TAG Video Systems and Harmonic Partner to Deliver Enhanced Real-Time Monitoring for VOS360 Streaming Workflows at the 2025 NAB Show

TAG Video Systems and Harmonic Partner to Deliver Enhanced Real-Time Monitoring ...

13/03/2025

DigitalGlue Invites NAB Visitors to Experience New Features in Managed Storage Platform that Empowers Video Teams to Scale Effortlessly

DigitalGlue Invites NAB Visitors to Experience New Features in Managed Storage P...

13/03/2025

FOR-A America Theme - Connecting the Present, Building the Future - Comes to Life at NAB 2025 Exhibition

FOR-A America Theme - Connecting the Present, Building the Future - Comes to Lif...

13/03/2025

Ajit Pai Appointed President of CTIA

CTIA, the wireless industry association, has named former FCC Chairman Aji Pai as its President and Chief Executive Officer, effective April 1. He replaces Mere...

13/03/2025

NAB: FCC's 60 Minutes Investigation Is Unconstitutional, Invalid

he National Association of Broadcasters is urging the FCC to end its investigation of that controversial CBS interview with Kamala Harris stating there is no ...

13/03/2025

CBS Miami to Launch AR Coverage of Weather and Sports for March Madness

MIAMI CBS News & Stations continues to expand its use of augmented and virtual reality technologies with the planned launch of an augmented reality/virtual real...

13/03/2025

Meet the co-founder and chief customer success & innovation officer

Srividhya Srinivasan, co-founder and chief customer success & innovation Officer at Amagi, tells TVBEurope how staying ahead of the latest trends is essential f...

13/03/2025

FCC Chairman Carr Launches Massive Deregulation Initiative

WASHINGTON FCC Chairman Brendan Carr announced that the agency has launched a massive, new deregulatory initiative that could potentially subject virtually all ...

13/03/2025

SDVI Integrates Rally With Spectra Vail

SUNNYVALE, Calif. SDVI has announced that it has integrated its Rally media supply chain management platform with the Spectra Vail multi-cloud data management s...

13/03/2025

FCC Approves Gray's Acquisition of KXLT

ATLANTA Gray Media has announced that the Federal Communications Commission (FCC) has granted a waiver of its local ownership rules to permit Gray Media to acqu...

13/03/2025

NAB Show 2025 Exhibitor Insight: Blackmagic Design

TV Tech: What do you anticipate will be the most significant technology trends at the 2025 NAB Show?...

13/03/2025

Watch Student Naomi Soleils Folk Pop Performance on The Voice

Watch Student Naomi Soleils Folk Pop Performance on The Voice The songwriting major sang Stars by Grace Potter and the Nocturnals during the blind auditions. ...

13/03/2025

2025-03-13

A new Apple Immersive concert experience, Metallica, is coming to Apple Vision Pro this Friday, March 14. Filmed in Mexico City during the sold-out second-year ...

13/03/2025

Italia 90 Republic of Ireland Squad, Riverdance, Cian Ducrot & B*Witched on Friday's Late Late Show

Here is your host, Patrick Kielty! Shake your Shamrocks, Patrick Kielty will be...

13/03/2025

RT Celebrating all things Irish this St. Patrick's Weekend

This St. Patrick's weekend, RT invites you to celebrate all things Irish, showcasing the very best of Irish sport, entertainment and live coverage from the...

13/03/2025

GTC 2025 - Announcements and Live Updates

What's next in AI is at GTC 2025. Not only the technology, but the people and ideas that are pushing AI forward - creating new opportunities, novel solution...

13/03/2025

T-Mobile, Thales and SIMPL ease IoT deployments with a flexible and secure connectivity solution

Facebook Twitter LinkedIn By combining T-Mobile's robust network, Thal...

13/03/2025

Relive the Magic as GeForce NOW Brings More Blizzard Gaming to the Cloud

Bundle up - GeForce NOW is bringing a flurry of Blizzard titles to its ever-expanding library. Prepare to weather epic gameplay in the cloud, tackling the genr...

13/03/2025

Gaming Goodness: NVIDIA Reveals Latest Neural Rendering and AI Advancements Supercharging Game Development at GDC 2025

AI is leveling up the world's most beloved games, as the latest advancements...

13/03/2025

Drop It Like It's Mod: Breathing New Life Into Classic Games With AI in NVIDIA RTX Remix

PC game modding is massive, with over 5 billion mods downloaded annually. Mods p...

12/03/2025

Como o Impacto Cultural e Financeiro da Indstria Musical Define Seu Sucesso em 2025

O Spotify acaba de lan ar o relat rio Loud & Clear deste ano, uma vis o transpar...

12/03/2025

Cmo el impacto cultural y financiero de la industria musical define su xito en 2025

Spotify acaba de presentar el informe Loud & Clear de este a o, una mirada trans...

12/03/2025

Nourish Mind, Body, and Soul This Ramadan With Spotify

Ramadan, a period of profound spiritual significance for Muslims worldwide, is a time for fasting, prayer, reflection, and community. Enrich your experience thi...

12/03/2025

How the Music Industry's Cultural and Financial Impact Define Its Success in 2025

Spotify has just unveiled this year's Loud & Clear report, a transparent loo...

12/03/2025

FAST now transcends back catalog content

More than 70% of FAST programming has been produced since 2010, according to new Gracenote report NEW YORK March 12, 2025 Gracenote, the content data busin...

12/03/2025

Viamedia Adopts ShowSeeker Pilot To Streamline Ad Workflows

GEONA, Nev. Independent digital and linear advertising rep firm Viamedia will adopt cloud-based ShowSeeker Pilot as its primary ad campaign and order management...

12/03/2025

Mediagenix Appoints Wael Yasin as Sales Director Central Europe

BRUSSELS Mediagenix has announced that Wael Yasin has joined the company as sales director Central Europe....

12/03/2025

Omdia: Global Online Consumer Expenditure to Hit $6.6 Trillion by 2029

LONDON A new study highlights opportunities for shoppable TV and the massive impact online consumer spending is having on the economy, with Omdia predicting tha...

12/03/2025

Comcast Technology Solutions Upgrades to Interra Systems BATON Version 9

CUPERTINO, Calif. Interra Systems has announced that Comcast Technology Solutions has integrated recent updates to BATON Version 9 into its operations....

12/03/2025

Nevion announces new 400G addition to its eMerge SDN media fabric offering

Nevion announces new 400G addition to its eMerge SDN media fabric offering Brie Clayton March 12, 2025 0 Comments High-capacity switch enhances existi...

12/03/2025

DaVinci Resolve Studio Delivers Cinematic Sound for Adam Bol

DaVinci Resolve Studio Delivers Cinematic Sound for Adam Bol Brie Clayton March 12, 2025 0 Comments Feature film relies on DaVinci Resolve Studio for ...

12/03/2025

SVT Leverages Ateliere Live to Pioneer 100% Software-Defined Production at Rally Sweden 2025

SVT Leverages Ateliere Live to Pioneer 100% Software-Defined Production at Rally...

12/03/2025

Berklee Awards Fenway Neighborhood Improvement Grant to Four Organizations

Berklee Awards Fenway Neighborhood Improvement Grant to Four Organizations A total of $17,000 will be distributed among the Boston-based nonprofits. By Madd...

12/03/2025

Offering a broad umbrella for IP standards

TVBEuropes Jenny Priestley sits down with new SMPTE president Richard Welsh to discuss his aims for the organisation going forward, its efforts to attract a you...

12/03/2025

Warner Bros Belgium takes a new approach to its post production workflows

The new process has significantly enhanced operational efficiencies, with automation freeing up creators to concentrate on higher value tasks By Matthew Corrig...

12/03/2025

Another VFX company suspends operations

Jellyfish Pictures, which has offices in London and Sheffield, said it has been battling hard in the face of strong headwinds over the last 12 months By Jenny ...

12/03/2025

Bitcentral to Showcase AI-Powered Innovations for Smarter...

Visit Booth #W2213 to Experience the Latest in AI-Driven Content Discovery and Workflow Automation Bitcentral, a leader in media workflow solutions, is set to ...

12/03/2025

Jeff Lilly Named WGN-TV Director Of Technology

CHICAGO Jeff Lilly has been named WGN-TV director of technology effective March 17, 2025, according to Ric Harris, WGN-TV vice president and general manager....

12/03/2025

Survey: Consumers Want More Shoppable TV Experiences

MOUNTAIN VIEW, Calif. A new study from LG Ad Solutions indicates that consumers want more features that would allow them to shop for products on the connected T...

12/03/2025

IP Showcase To Focus On IP, Broadcast Tech Convergence at 2025 NAB Show

BOTHELL, Wash. The Alliance for IP Media Solutions (AIMS), Advanced Media Workflow Association (AMWA) and the Video Services Forum (VSF) will once again present...

12/03/2025

Comcast Boosts Internet Speeds for More Than 20 Million Customers

PHILADELPHIA Comcast announced that it has upgraded Xfinity Internet speeds for more than 20 million customers for no additional cost....

12/03/2025

Create with Maxon: Cinema 4D Fundamentals Workshop - March 12-14

Create with Maxon: Cinema 4D Fundamentals Workshop - March 12-14 Brie Clayton March 11, 2025 0 Comments Makin' Waffles with Elly Wade During Marc...

12/03/2025

Ross Video Strengthens Cloud Leadership with Appointment of Aaron Tunnell

Ottawa, Canada - March 12, 2025 - Ross Video is pleased to announce the appointment of Aaron Tunnell as Business Development Director, Cloud Solutions, reinforc...

12/03/2025

VEON to release 4Q 2024 trading update on 20 March 2025

12 Mar 2025 VEON to release 4Q 2024 trading update on 20 March 2025 Dubai, 12 March 2025 - VEON Ltd. (NASDAQ: VEON), a global digital operator, today confirms ...

12/03/2025

Getting Set for the Winter Olympics: Inside SVT's Ongoing Software-Based Production Evolution

Getting set for the Winter Olympics: Inside SVT's ongoing software-based pro...

12/03/2025

Seamless SMPTE 2110: A Discussion on Making the Move to IP Less Painful

Seamless SMPTE 2110: A Discussion on Making the Move to IP Less Painful Leaders from Netflix, Monumental Sports & Entertainment, LinkedI, and Megapixel address ...