Why does DDOS protection need to be continuously upgraded? Its opponent is a profitable "black industry chain"

We know that hackers also need costs to launch attacks on servers, but the cost of DDOS protection with enterprises is insignificant. According to relevant data, the average annual DDOS protection cost of enterprises is about 60 million yuan, while the corresponding attack cost is very low. The capital consumption of attack and protection is very unequal, and the cost of attack continues to decline in recent years. , Resulting in more serious cyber attacks.

On some dark web forums, there are many websites that provide online attack services. You can launch a DDOS attack on a certain IP for only $10, and there are many websites that provide DDOS attack software. A DDOS attack software only costs 45 dollars. A set of detailed attack tutorials only cost 5 US dollars, and only 50 US dollars can allow a person who does not understand professional skills to easily launch a DDoS attack. Cyber ​​attacks are becoming more and more simple and intelligent, leading to a significant increase in cyber security risks. Attackers steal user information through cyber attacks and then sell it cheaply on the dark web. User information on mainstream websites such as Amazon, Uber, Twitter, GrubHub, etc., only It takes less than $1,000 to get it all. And if the company does not have corresponding DDOS protection measures, its loss far exceeds the cost of these attackers.

The threshold of cybercrime is getting lower and lower. The report estimates that even a low-end cyber attack that costs only US$34 per month can earn back US$25,000. Such a high input-output ratio has allowed more and more people to join the black In the industrial chain. According to relevant statistics, the domestic cyber attack "black industry chain" has an output value of more than 10 billion, and about 380,000 black entrepreneurs have made huge profits by selling botnet broilers, cyber attack services, and extortion.

The purpose of DDOS attacks is mainly for profit, extortion, information theft, malicious competition, etc., and some are purely for "show off skills." But no matter what the purpose is, this is illegal. Now the country pays more and more attention to the network security environment, and many DDOS attack groups have been arrested one after another. Companies that have been attacked by DDOS should not be overly panicked. First, check whether the website server has been hacked, turn on IP ban PING, close unnecessary ports, deploy professional network security defense solutions, and protect website security and data information.

Nowadays, there are many DDOS protection methods in network security, which can protect against various types of DDOS attacks, ignoring CC and harmful website behaviors including malicious brush traffic, malicious crawlers, Web application attacks, etc., intelligently predict attack behaviors, and can also based on the degree of DDOS attack , Choose to configure different DDOS protection versions to achieve intelligent website acceleration and security.

Although DDOS attacks are powerful, we don't need to be too afraid. I believe that with the continuous optimization of corresponding DDOS protection technologies, one day it will slowly disappear and withdraw from the stage of history.

   本文转自:http://www.heikesz.com/ddos1/1819.html

Guess you like

Origin blog.csdn.net/weixin_51110871/article/details/111591374