跳到主体内容

Collateral damage: 26% of DDoS attacks lead to data loss

2015年9月17日

According to the research, 20% of businesses with 50 or more employees have suffered at least one DDoS attack, with enterprises being most affected (24%).

A one in five chance of being hit. Several hours of downtime. Up to US$417,000 to recover. This is the portrait of a typical DDoS attack, analyzed in detail during the latest Corporate IT Security Risks Survey conducted by Kaspersky Lab and B2B International. According to the research, 20% of businesses with 50 or more employees have suffered at least one DDoS attack, with enterprises being most affected (24%). Furthermore, over a quarter of attacks lead to the loss of sensitive data, an unexpected and damaging consequence of a DDoS attack.

The cost of recovery: a sensitive issue for SMBs

Results of our previous report show that DDoS attacks may lead to significant financial damage for small and medium businesses. DDoS is the fourth most expensive type of security breach faced by SMBs. On average a DDoS attack costs SMBs more than $50K in recovery bills, which is significantly more than the typical costs they face recovering from other types of attack. Enterprises spend a lot to recover from a third party failure or cyber espionage attack, but a typical financial loss from a DDoS is below average for enterprises ($417,000 compared to an average of $620,000 for enterprises to recover from other types of attack). Small business were most likely to lose data as result of a DDoS attack – 31% of SMBs reported data loss compared with 22% of enterprises.

This indicates that SMBs struggle to implement efficient measures to mitigate the threat of DDoS attacks, often due to limited resources. DDoS is an umbrella term for different attack technologies, and methods to avert them may be hard to understand and expensive to deploy. While analyzing attitudes towards DDoS attacks, we see that roughly a half of businesses think that additional investment on DDoS prevention technologies is worth the investment.

 

Damage variety: downtime, lost contracts, data loss

DDoS attacks last several hours and can cause complete disruption to a service. Some attacks are even more damaging: 9% of those causing a service to go dark last from two days to a week, and in 7% of cases such an attack lasted for several weeks or more. But the damage is not limited to downtime. According to respondents, 32% of serious DDoS attacks coincided with a network intrusion. Although it is hard to trace two different attacks to a single source, survey results provide evidence that DDoS attacks may lead to additional damage, including loss or theft of sensitive data.

“Businesses have to re-evaluate their perception of a DDoS attack. The report clearly shows that the damage scope from such attacks goes far beyond the temporary downtime of a corporate website. Companies report total disruption to their operations, and in some cases – loss of sensitive data. Still, many businesses feel that a mitigation strategy is too complex and expensive to implement. The solution to this is straightforward: vendors have to take technical challenges upon themselves, offering an easy to implement and use solution to clients. This is the approach that we have chosen for the Kaspersky DDoS Protection solution,” commented Evgeny Vigovsky, Head of Kaspersky DDoS Protection, Kaspersky Lab.

To download the complete report on the consequences and perception of DDoS attacks click here.

Learn more about Kaspersky DDoS Protection here.

Collateral damage: 26% of DDoS attacks lead to data loss

According to the research, 20% of businesses with 50 or more employees have suffered at least one DDoS attack, with enterprises being most affected (24%).
Kaspersky logo

关于卡巴斯基

卡巴斯基是一家成立于1997年的全球网络安全和数字隐私公司。卡巴斯基不断将深度威胁情报和安全技术转化成创新的安全解决方案和服务,为全球的企业、关键基础设施、政府和消费者提供安全保护。公司提供全面的安全产品组合,包括领先的端点保护解决方案以及多种针对性的安全解决方案和服务,以及用于应对复杂和不断变化的数字威胁的网络免疫解决方案。全球有超过4亿用户使用卡巴斯基技术保护自己,我们还帮助全球200,000家企业客户保护最重要的东西。要了解更多详情,请访问www.kaspersky.com.cn.

相关文章 企业新闻