Black Lotus delivers award winning DDoS protection ranging from full network defense to website and server protection, 24/7/365. Learn more by visiting http://www.blacklotus.net or call (866) 477-5554.

Browsing "Older Posts"

Browsing Category "Human Behavior Analysis"






Peak bit volume drops 87 percent in Q3 2014, coinciding with departure from amplification attacks


SAN FRANCISCO--()--The newest up-and-coming countries of origin for distributed denial of service (DDoS) attacks will be Vietnam, India and Indonesia in 2015. While these countries don’t have the necessary bandwidth to launch massive DDoS attacks, the volume of compromised end point devices, such as mobile phones, make them prime sources of new botnets. China topped the list of leading sources of DDoS attacks in Q3 2014, followed by the United States and Russia. These findings were issued today via Black LotusQ3 2014 Threat Report. Black Lotus, a leader in availability security and provider of DDoS protection, compiles its quarterly Threat Reports by drawing on the latest attack data from its network logs and analyzing the results for trends in attack size, duration, method, source and other characteristics.
“DDoS attacks continue to fall in size and frequency in 2014, making them easier to handle for tier one carrier networks with excess capacity, but still tricky to manage for organizations with less bandwidth”
The Black Lotus Q3 2014 Threat Report, which covers DDoS attack data between July 1 and September 29, 2014, shows that Black Lotus customers experienced a 87 percent decrease in bit volume attacks compared to the rest of 2014. These changes can be attributed to attackers resorting to more complex attacks, such as SYN floods and application layer attacks, instead of amplification attacks. The Black Lotus mitigation team expects attackers will continue to resort to non-amplification attacks when there are not enough vulnerable systems available to exploit for reflection methods, and they anticipate a rise in mobile DDoS attacks as emerging countries increase smartphone subscriber usage. Therefore, IT managers and security teams will need to adjust strategies to handle targeted, multi-vector attacks to thwart outages rather than volumetric methods, while preparing against growing packet volume that may saturate their existing DDoS safeguards.
The report findings also show that:
  • The largest bit volume DDoS attack observed during the report period was 54.4 Gbps on September 14, a marked decline in volume since the beginning of 2014, due to NTP and other types of amplification attacks becoming more difficult to execute without sufficient NTP vulnerabilities. Rather than using volumetric attacks to overwhelm servers, organizations should be wary of cyberattackers targeting crucial ports to thwart legitimate traffic from reaching online destinations.
  • 58 percent of the 255,564 attacks observed during Q3 2014 were regarded as severe, nearly half of which were SYN flood attacks and 15 percent targeted Web servers (HTTP) and domain name services (DNS), which result in site outages and are extremely difficult to mitigate without professional assistance.
  • The average attack during the period reported was 3.5 Gbps, a sustained increase in bit volume, and 0.99 million packets per second (Mpps), a continued decrease in packet volume since last quarter. This indicated a change of attack methods from large volumetric network-based attacks to complex attacks using multiple vectors, with both application layer attacks and SYN flood attacks blended together, meaning security practitioners will need to leverage intelligent DDoS mitigation rather than budgeting extra network bandwidth.
“DDoS attacks continue to fall in size and frequency in 2014, making them easier to handle for tier one carrier networks with excess capacity, but still tricky to manage for organizations with less bandwidth,” said Shawn Marck, co-founder and chief security officer of Black Lotus. “The widespread education of ways to thwart NTP caused attackers to resort to tried and true blends of SYN flood and application layer attacks, which are very difficult to mitigate using conventional network hardware as these types target the same port needed to serve legitimate users.”
Download the full Black Lotus Q3 2014 Threat Report for more details.
About Black Lotus Communications
Black Lotus Communications is a security innovator that pioneered the first commercially viable DDoS mitigation solutions. These advanced solutions enhance the security posture of small and medium businesses and enterprise clients while reducing capital expenditures, managing risk, ensuring compliance, and improving earnings and retention. Breakthrough developments at Black Lotus include the world's first DDoS-protected hosting network, the first IPv6 DDoS mitigation environment, and the first highly effective Layer 7 attack mitigation strategy. For more information, visit www.blacklotus.net or follow Black Lotus on Twitter at https://twitter.com/ddosprotection.

Contacts

Metis Communications
Justine Boucher, 617-236-0500
blacklotus@metiscomm.com

Black Lotus Threat Report Reveals Vietnam, India, Indonesia will Grow Mobile DDoS Attacks in 2015

By Unknown → Tuesday, November 18, 2014
DDoS protection technology mitigates, stops malicious botnet Layer 7 attacks 

Los Angeles, September 10, 2012 – Black Lotus, a leader in availability security and a provider of distributed denial of service (DDoS) protection, today unveiled its patent-pending Human Behavior Analysis (HBA) technology to protect Web hosts and e-commerce companies against DDoS attacks. Black Lotus first began developing HBA in 2009 when it observed complex, insidious application layer (Layer 7) attacks against websites. The technology allows Black Lotus customers to send all Web traffic through the DDoS-protected HBA engine and receive only known human users in return, which is critical to ensure client site uptime.

“HBA is the only availability security technology that can effectively judge whether a site visitor is human without relying on any packet or request header data,” said Jeffrey Lyon, Black Lotus president and CEO. “HBA leverages numerous patent-pending algorithms that observe an incoming site visitor and, when matched, tell the engine whether the visitor is a human or a robot. In cases where the algorithm is not a match, the visitor is further observed and flagged if it performs suspicious activity.”

John Larsen, systems engineer of javapipe.com said, "Quality of service to our clients has always been our highest priority. We utilize Black Lotus for their DDoS mitigation tools to keep our clients’ servers safe and secure. They provide the same level of quality, assurance and peace of mind that our clients have always expected of us."

Layer 7 attacks against websites penetrate slowly enough to bypass commercially available DDoS mitigation packet filters, mimicking acceptable Web traffic behavior to exhaust the resources of the server, resulting in service outages. Black Lotus saw the industry need for an intelligent DDoS mitigation platform that could understand real versus malicious Web traffic without relying on standard conventions. Available as a software-as-a-service (SaaS) offering, HBA renders intelligent filtering decisions and ensures thousands of websites enjoy uptime continuity.


Additional Black Lotus information:

About Black Lotus Communications

Black Lotus Communications is a Los Angeles-based security innovator that pioneered the first commercially viable DDoS mitigation solutions in 1999, weeks after the first known DDoS attacks. These advanced solutions enhance the security posture of small and medium businesses and enterprise clients while reducing capital expenditures, managing risk, ensuring compliance, and improving earnings and retention. Breakthrough developments at Black Lotus include the world's first DDoS protected hosting network, the first IPv6 DDoS mitigation environment, and the first highly effective Layer 7 attack mitigation strategy. For more information, visit www.blacklotus.net or follow Black Lotus on Twitter at https://twitter.com/ddosprotection.


Media Contact:
Justine Boucher
Metis Communications
617-236-0500
justine.boucher@metiscomm.com


Black Lotus Launches Patent-Pending Human Behavior Analysis for DDoS Protection

By Unknown → Monday, September 10, 2012
DDoS protection technology mitigates, stops malicious Layer 7 botnet attacks for Florida law enforcement agency

Los Angeles and Tampa, Fla., August 27, 2012 – Black Lotus, a leader in availability security and a provider of distributed denial of service (DDoS) protection, today announced that the Hillsborough County Sheriff’s Office (HCSO) has selected Black Lotus’ patent-pending technology to ensure the security of its information systems. The technology protects the entire HCSO network from threats against availability and inspects its Web traffic through the DDoS-protected Human Behavior Analysis (HBA) engine, serving only verified human users in return, a technique that is critical to ensuring complete service continuity.

The HCSO website is a central repository for residents of one of Florida’s largest counties, and it offers information and resources on topics such as emergency services, special investigation services and homeland security, as well as updates on local crime. The ability to provide citizens access to this information around the clock is a high priority for the HCSO IT team.

“DDoS attacks are no longer isolated occurrences. Virtually anyone with a website is at risk,” said Jeffrey Lyon, President of Black Lotus. “Given the potential for losses, any company or agency that depends on its website as its primary platform for revenue or communication must form a holistic DDoS protection plan.”

Black Lotus offers protection against DDoS attacks that typically penetrate slowly enough to bypass commercially available mitigation solutions. This widely used method of attack infiltrates the network at the application layer and mimics acceptable Web traffic behavior, exhausting the resources of servers and resulting in service outages. Black Lotus provides HCSO with an intelligent DDoS mitigation platform that monitors the site for this kind of traffic behavior and distinguishes between legitimate and malicious site traffic, ensuring uptime continuity.

About Black Lotus Communications

Black Lotus Communications is a Los Angeles-based security innovator that pioneered the first commercially viable DDoS mitigation solutions in 1999, weeks after the first known DDoS attacks. These advanced solutions enhance the security posture of small and medium businesses and enterprise clients while reducing capital expenditures, managing risk, ensuring compliance, and improving earnings and retention. Breakthrough developments at Black Lotus include the world's first DDoS protected hosting network, the first IPv6 DDoS mitigation environment, and the first highly effective Layer 7 attack mitigation strategy. For more information, visit www.blacklotus.net or follow Black Lotus on Twitter at https://twitter.com/ddosprotection.

Media Contact

Justine Boucher
Metis Communications
617-236-0500
justine.boucher@metiscomm.com


Hillsborough County Sheriff’s Office Selects Black Lotus for DDoS Protection

By Unknown → Monday, August 27, 2012