STOCK TITAN

DDoS Attackers Increase Targeting of Global Financial Sector, According to FS-ISAC and Akamai Report

Rhea-AI Impact
(No impact)
Rhea-AI Sentiment
(Neutral)
Tags
FS-ISAC and Akamai Technologies (NASDAQ: AKAM) released a joint report revealing that the financial sector was the primary target for DDoS attacks in 2024. The report titled 'From Nuisance to Strategic Threat' highlights a 23% increase in application-layer DDoS attacks between 2023-2024, with the Asia-Pacific region accounting for 38% of all volumetric attacks, up from 11% in 2023. The study found that attackers are using more sophisticated methods, including DDoS-for-hire services and precision-targeted attacks that mimic legitimate user behavior. Key findings show that geopolitical tensions and the expansion of APIs in financial services have contributed to increased attack frequency. In response, the organizations developed a five-level DDoS Maturity Model to help financial institutions assess and improve their defensive capabilities.
FS-ISAC e Akamai Technologies (NASDAQ: AKAM) hanno pubblicato un rapporto congiunto che rivela come il settore finanziario sia stato il principale bersaglio degli attacchi DDoS nel 2024. Il rapporto, intitolato 'Da fastidio a minaccia strategica', evidenzia un aumento del 23% degli attacchi DDoS a livello applicativo tra il 2023 e il 2024, con la regione Asia-Pacifico che rappresenta il 38% di tutti gli attacchi volumetrici, rispetto all'11% del 2023. Lo studio ha rilevato che gli aggressori stanno utilizzando metodi più sofisticati, inclusi servizi DDoS-for-hire e attacchi mirati con precisione che imitano il comportamento degli utenti legittimi. I risultati chiave mostrano che le tensioni geopolitiche e l'espansione delle API nei servizi finanziari hanno contribuito all'aumento della frequenza degli attacchi. In risposta, le organizzazioni hanno sviluppato un Modello di Maturità DDoS a cinque livelli per aiutare le istituzioni finanziarie a valutare e migliorare le proprie capacità difensive.
FS-ISAC y Akamai Technologies (NASDAQ: AKAM) publicaron un informe conjunto que revela que el sector financiero fue el principal objetivo de los ataques DDoS en 2024. El informe titulado 'De molestia a amenaza estratégica' destaca un aumento del 23% en los ataques DDoS a nivel de aplicación entre 2023 y 2024, con la región Asia-Pacífico representando el 38% de todos los ataques volumétricos, frente al 11% en 2023. El estudio encontró que los atacantes están utilizando métodos más sofisticados, incluidos servicios DDoS por encargo y ataques de precisión que imitan el comportamiento legítimo de los usuarios. Los hallazgos clave muestran que las tensiones geopolíticas y la expansión de las API en los servicios financieros han contribuido al aumento de la frecuencia de los ataques. En respuesta, las organizaciones desarrollaron un Modelo de Madurez DDoS de cinco niveles para ayudar a las instituciones financieras a evaluar y mejorar sus capacidades defensivas.
FS-ISAC와 Akamai Technologies(NASDAQ: AKAM)는 2024년에 금융 부문이 DDoS 공격의 주요 대상임을 밝힌 공동 보고서를 발표했습니다. '성가심에서 전략적 위협으로'라는 제목의 이 보고서는 2023년에서 2024년 사이 애플리케이션 계층 DDoS 공격이 23% 증가했으며, 아시아-태평양 지역이 전체 대량 공격의 38%를 차지해 2023년의 11%에서 크게 증가했다고 강조합니다. 연구에 따르면 공격자들은 DDoS 임대 서비스와 합법적인 사용자 행동을 모방한 정밀 타깃 공격 등 더 정교한 방법을 사용하고 있습니다. 주요 발견은 지정학적 긴장과 금융 서비스 내 API 확장이 공격 빈도 증가에 기여했음을 보여줍니다. 이에 대응하여 양 기관은 금융 기관이 방어 역량을 평가하고 향상시킬 수 있도록 돕는 5단계 DDoS 성숙도 모델을 개발했습니다.
FS-ISAC et Akamai Technologies (NASDAQ : AKAM) ont publié un rapport conjoint révélant que le secteur financier était la principale cible des attaques DDoS en 2024. Le rapport intitulé « De nuisance à menace stratégique » met en lumière une augmentation de 23 % des attaques DDoS au niveau applicatif entre 2023 et 2024, la région Asie-Pacifique représentant 38 % de toutes les attaques volumétriques, contre 11 % en 2023. L'étude a révélé que les attaquants utilisent des méthodes plus sophistiquées, notamment des services de DDoS à la demande et des attaques ciblées avec précision qui imitent le comportement légitime des utilisateurs. Les conclusions clés montrent que les tensions géopolitiques et l'expansion des API dans les services financiers ont contribué à l'augmentation de la fréquence des attaques. En réponse, les organisations ont développé un modèle de maturité DDoS en cinq niveaux pour aider les institutions financières à évaluer et améliorer leurs capacités de défense.
FS-ISAC und Akamai Technologies (NASDAQ: AKAM) veröffentlichten einen gemeinsamen Bericht, der zeigt, dass der Finanzsektor im Jahr 2024 das Hauptziel von DDoS-Angriffen war. Der Bericht mit dem Titel 'Von Belästigung zur strategischen Bedrohung' hebt einen Anstieg der DDoS-Angriffe auf Anwendungsebene um 23 % zwischen 2023 und 2024 hervor, wobei die Region Asien-Pazifik 38 % aller volumetrischen Angriffe ausmacht, gegenüber 11 % im Jahr 2023. Die Studie stellte fest, dass Angreifer zunehmend raffiniertere Methoden anwenden, darunter DDoS-zu-Miet-Dienste und präzise zielgerichtete Angriffe, die legitimes Nutzerverhalten nachahmen. Wichtige Erkenntnisse zeigen, dass geopolitische Spannungen und die Ausweitung von APIs im Finanzdienstleistungsbereich zur erhöhten Angriffsfrequenz beigetragen haben. Als Reaktion entwickelten die Organisationen ein fünfstufiges DDoS-Reifegradmodell, um Finanzinstitute bei der Bewertung und Verbesserung ihrer Abwehrfähigkeiten zu unterstützen.
Positive
  • Akamai demonstrates industry leadership by collaborating with FS-ISAC on critical cybersecurity research
  • Development of a practical DDoS Maturity Model showcases Akamai's expertise and value proposition
  • Growing cybersecurity threats likely to increase demand for Akamai's security solutions
Negative
  • Rising sophistication of DDoS attacks could require increased R&D investment to maintain competitive edge
  • Growing use of DDoS-for-hire services may make attacks more accessible and frequent, straining resources

Financial sector is the top industry for volumetric DDoS attacks; sophisticated, precision-targeted threats are growing

RESTON, Va., June 10, 2025 /PRNewswire/ -- FS-ISAC, the member-driven, not-for-profit organization that advances cybersecurity and resilience in the global financial system, and Akamai Technologies, Inc. (NASDAQ: AKAM), the cybersecurity and cloud computing company that powers and protects business online, today released their joint annual report analyzing the strategic threat posed by the escalating number and sophistication of distributed denial-of-service (DDoS) attacks and their impact on customer trust, operations, and profitability in the financial services sector.

The report, From Nuisance to Strategic Threat: DDoS Attacks Against the Financial Sector found that in 2024, the financial services sector was the top target of volumetric DDoS attacks, which aim to overwhelm the target with sheer traffic. DDoS attacks on financial firms' application programming interfaces (APIs) and customer-facing websites are on the rise as well. These precision-targeted attacks are difficult to detect because they mimic legitimate user behavior, which indicates a new level of skill among cybercriminals.

The joint report details attack data by region, with profiles of the sector's most prolific attackers. It also provides a DDoS Maturity Model that financial firms can leverage to evaluate their current capabilities and practices to prepare for DDoS attacks, as well as fundamental cyber practices for managing DDoS threats.

"DDoS attacks are becoming increasingly sophisticated, evolving from simple network flooding to targeted, multidimensional assaults that exploit intricate vulnerabilities across the entire supply chain," said Teresa Walsh, FS-ISAC's Chief Intelligence Officer and Managing Director, EMEA. "As threat tactics continue to evolve, we must ensure our technical defenses evolve and our people, tools, and processes work seamlessly together. It is critical that we harden our infrastructure, and foster a culture of continuous vigilance and collaboration, to protect continuity and customer trust."

Key findings highlight the shifting dynamics of DDoS threats — from the increasing use of DDoS-for-hire services to regional surges in activity — underscoring the urgent need for advanced, adaptive defense strategies. Highlights of the report include:

  • DDoS attacks on the financial sector have increased disproportionately compared to other industries. The sector remained the leading target for volumetric DDoS attacks year over year, with a major spike in October 2024.
  • DDoS attacks are increasing in frequency, and cybercriminals are exploiting today's high bandwidths and greater computational resources to launch more adaptable, powerful, and cost-effective DDoS attacks.
  • Application-layer DDoS attacks against the financial sector increased 23% between 2023 and 2024. The adoption of APIs in financial services has expanded the sector's threat surface, and malicious actors have evolved their tactics in response.
  • The widespread use of DDoS-for-hire services targeting the financial sector disguises attackers, making it difficult to identify the cybercriminal's motivation and develop mitigation plans.
  • Ongoing geopolitical tensions, particularly the Israel-Hamas and Russia-Ukraine wars, have fueled a surge in hacktivism.
  • DDoS attacks on the financial services sector increased significantly in the Asia-Pacific region, accounting for 38% of all volumetric DDoS attacks, up from 11% in 2023.

Together, FS-ISAC and Akamai developed a five-level DDoS Maturity Model detailing DDoS-relevant characteristics, defensive capabilities, and risks to help financial institutions assess their ability to withstand DDoS attacks. Institutions at any level of cyber maturity can use it to identify areas for improvement and improve their resilience, prioritize investments, and facilitate ongoing enhancement.

"Threat actors will continue to leverage DDoS attacks to exploit the security of our institutions," said Steve Winterfeld, Advisory CISO of Akamai. "These attacks strive to exhaust an institution's network infrastructure and in turn, drain the resources used to defend against them. The implementation of mitigation strategies, robust cyber hygiene fundamentals, and industry best practices can help the sector defend against the evolving risk."

The collaboration on this report is a product of Akamai's founding participation in FS-ISAC's Critical Providers Program, which was launched in 2022 to bolster the financial sector's supply chain security.

Download the full report.

About FS-ISAC

FS-ISAC is the member-driven, not-for-profit organization that advances cybersecurity and resilience in the global financial system, protecting the financial institutions and the people they serve. Founded in 1999, the organization's real-time information-sharing network amplifies the intelligence, knowledge, and practices of its members for the financial sector's collective security and defenses. Member financial firms represent $100 trillion in assets in 75 countries.

About Akamai

Akamai is the cybersecurity and cloud computing company that powers and protects business online. Our market-leading security solutions, superior threat intelligence, and global operations team provide defense in depth to safeguard enterprise data and applications everywhere. Akamai's full-stack cloud computing solutions deliver performance and affordability on the world's most distributed platform. Global enterprises trust Akamai to provide the industry-leading reliability, scale, and expertise they need to grow their business with confidence. Learn more at akamai.com and akamai.com/blog, or follow Akamai Technologies on X and LinkedIn.

Contacts for Media

media@fsisac.com

jlubinsk@akamai.com 

Cision View original content to download multimedia:https://www.prnewswire.com/news-releases/ddos-attackers-increase-targeting-of-global-financial-sector-according-to-fs-isac-and-akamai-report-302477124.html

SOURCE Akamai Technologies, Inc.

FAQ

What were the key findings of Akamai's 2024 DDoS attack report?

The report found that financial services was the top target for DDoS attacks, with application-layer attacks increasing 23% from 2023 to 2024. The Asia-Pacific region saw a significant surge, accounting for 38% of volumetric attacks, up from 11% in 2023.

How has AKAM responded to the increase in DDoS attacks?

Akamai collaborated with FS-ISAC to develop a five-level DDoS Maturity Model that helps financial institutions assess their defensive capabilities and identify areas for improvement in their DDoS protection.

What are the main types of DDoS attacks targeting financial institutions in 2024?

The main types include volumetric DDoS attacks that overwhelm targets with traffic, precision-targeted attacks that mimic legitimate user behavior, and application-layer attacks targeting APIs and customer-facing websites.

What factors are driving the increase in DDoS attacks according to Akamai?

Key factors include geopolitical tensions (Israel-Hamas and Russia-Ukraine wars), increased use of DDoS-for-hire services, expansion of APIs in financial services, and availability of higher bandwidths and computational resources.

What percentage of DDoS attacks occurred in the Asia-Pacific region in 2024?

The Asia-Pacific region accounted for 38% of all volumetric DDoS attacks in 2024, a significant increase from 11% in 2023.
Akamai Technologies Inc

NASDAQ:AKAM

AKAM Rankings

AKAM Latest News

AKAM Stock Data

10.84B
143.25M
1.87%
98.16%
5.87%
Software - Infrastructure
Services-business Services, Nec
Link
United States
CAMBRIDGE