Oleg Bosenko, Director of the IBS Cybersecurity Directorate, sees an increase in the number of attacks in general and believes that it is impossible to talk about a decrease in the effectiveness of attacks in individual segments: "I would not say that any one segment of the market has become more vulnerable to attacks. It should be taken into account that a certain part of companies do not display information on incidents or minimize it. In this regard, regulators have the most reliable information. As for a decrease in the effectiveness of attacks, it is impossible to talk about this. Firstly, you cannot underestimate the enemy. Secondly, the attack mechanisms are improving."
Vyzhanov draws sri lanka whatsapp resourceattention to serious changes in the attackers' tactics: "Hackers are no longer targeting the end (attacked) services, but the telecom operators that offer services to customers. Even providers that have specialized equipment to protect against DDoS attacks have encountered the problem. The main problem that telecom operators have encountered is the difficulty of determining the fact of an attack. In the standard scheme, information about traffic is sent from the provider's routers to a specialized sensor, which serves to detect the fact of the attack. But since it is distributed to all the provider's addresses, it is impossible to record obvious excesses to any end address. The attackers' tools have also changed. Thus, the organizers of the attacks send a large amount of traffic arbitrarily to all addresses via service ports. The organizers of the attacks also fragment the traffic, which does not take up a significant amount of bandwidth, but generates a large number of packets per second and thus creates a high load on the network equipment. And finally, tens of thousands of zombie hosts are used for attacks, which begin to communicate with services hosted by the Internet provider's clients. The inability to suppress this attack leads to the blocking of communication channels, up to the complete destabilization of the operator's work."
"We have been monitoring attacks on Russian service providers for a long time now. Since such cyber incidents have high efficiency rates, they will continue. In this situation, we recommend that Internet and cloud providers take care of connecting professional solutions for protection against DDoS attacks. Since hackers use the tactics of "carpet bombing", it will be very difficult to cope with such attacks on your own," warns Ramil Khantimirov, CEO and co-founder of StormWall.
"We are faced with an ever-increasing level of threats to IT services and infrastructure. To prevent negative impacts, we constantly test the solutions we use for cyber resilience, actively invest in expanding our staff and improving our information security system. This allows us to ensure the continuity of our services and prevent negative impacts on business. Thanks to the measures taken, we were able, in particular, to repel a powerful DDoS attack with an intensity of 207 Gbit/s on the broadband segment of the MTS network in the spring of 2024 and solve other business cybersecurity problems," the press service of PJSC Mobile TeleSystems reported.
"Approaches to protection have evolved relative to 2022. In addition to resource protection services from providers, companies are focusing on upgrading network infrastructure and implementing specialized protection tools. It is also worth noting the growing popularity of cloud services for protection against DDoS attacks," - these are the trends in organizing a DDoS protection system, according to Viktor Gulevich.
CyberFirst's Director of Cybersecurity Alexey
-
- Posts: 679
- Joined: Thu Jan 02, 2025 7:05 am