
Akamai State of the Internet / Security Summer 2018: Web Attack Report Shows Hospitality Industry Under Siege From Botnets Bot-Driven Credential Abuse, DDoS Attacks Have Continued to Rise While Leveraging New Techniques to Overwhelm Web-Facing Systems
Cambridge, MA | June 26, 2018
Cybersecurity defenders face increasing threats from organizations in the form of bot-based credential abuse targeting the hospitality industry and advanced distributed denial of service (DDoS) attacks, according to the Summer 2018 State of the Internet / Security: Web Attack report released by Akamai Technologies, Inc. (NASDAQ: AKAM). Analysis of current cyberattack trends for the six month period from November 2017 through April 2018 reveals the importance of maintaining agility not only by security teams, but also by developers, network operators and service providers in order to mitigate new threats.
Hospitality Industry vs. Bots: Analysis of Fraud Attempts
The use of bots to abuse stolen credentials continues to be a major risk for Internet-driven businesses, but data from this report reveals that the hospitality industry experiences many more credential abuse attacks than other sectors.
Akamai researchers analyzed nearly 112 billion bot requests and 3.9 billion malicious login attempts that targeted sites in this industry including airlines, cruise lines and hotels among others. Nearly 40 percent of the traffic seen across hotel and travel sites is classified as impersonators of known browsers, which is a known vector for fraud.
Geographic analysis of attack traffic origination reveals that Russia, China and Indonesia were major sources of credential abuse for the travel industry during the period covered by the report, directing about half of their credential abuse activity at hotels, cruise lines, airlines, and travel sites. Attack traffic origination against the hospitality and travel industry from China and Russia combined was three times the amount of attacks originating in the U.S.
These countries have historically been large centers for cyberattacks, but the attractiveness of the hospitality industry appears to have made it a significant target for hackers to carry out bot-driven fraud, said Martin McKeay, Senior Security Advocate, Akamai and senior editor of the State of the Internet / Security report.
The Rise of Advanced DDoS Attacks Highlights Need for Security Adaptability
While simple volumetric DDoS attacks continued to be the most common method used to attack organizations globally, other techniques have continued to appear. For this edition of the report, Akamai researchers identified and tracked advanced techniques that show the influence of intelligent, adaptive enemies who change tactics to overcome the defenses in their way.
One of the attacks in the report came from a group that coordinated their attacks over group chats on STEAM and IRC. Rather than using a botnet of devices infected with malware to follow hacker commands, these attacks were carried out by a group of human volunteers. Another notable attack overwhelmed the target's DNS server with bursts lasting several minutes instead of using a sustained attack against the target directly. This added to the difficulty of mitigating the attack due to the sensitivity of DNS servers, which allows outside computers to find them on the Internet. The burst system also increased difficulty by fatiguing the defenders over a long period of time.
Both of these attack types illustrate how attackers are always adapting to new defenses to carry out their nefarious activities, said McKeay. These attacks, coupled with the record-breaking 1.35 Tbps memcached attacks from earlier this year, should serve as a not-so-gentle reminder that the security community can never grow complacent.
By the Numbers: Other highlights from Akamai's Summer 2018 State of the Internet / Security: Web Attack report include:
Akamai measured a 16 percent increase in the number of DDoS attacks recorded since last year.
The largest DDoS attack of the year set a new record at 1.35 Tbps by using the memcached reflector attack.
Researchers identified a 4 percent increase in reflection-based DDoS attacks since last year.
There was a 38 percent increase in application-layer attacks such as SQL injection or cross-site scripting.
In April, the Dutch National High Tech Crime Unit took down a malicious DDoS-for-hire website with 136,000 users.
A complimentary copy of the Summer 2018 State of the Internet / Security: Web Attack report is available for download at akamai.com/stateoftheinternet-security. For further analysis from the Akamai research teams, check out the Attack Spotlight detailing the memcached attacks from earlier this year. The Akamai blog provides graphs and data visualizations from the data of the report.
Methodology The Akamai State of the Internet / Security: Web Attack Report for Summer 2018 combines attack data from across Akamai's global infrastructure and represents the research of a diverse set of teams throughout the company. The report provides analysis of the current cloud security and threat landscape, as well as insight into attack trends using data gathered from the Akamai Intelligent Platform. The contributors to the State of the Internet / Security Report include security professionals from across Akamai, including the Security Intelligence Response Team (SIRT), the Threat Research Unit, Information Security, and the Custom Analytics group.
About Akamai As the world's largest and most trusted cloud delivery platform, Akamai makes it easier for its customers to provide the best and most secure digital experiences on any device, anytime, anywhere. Akamai's massively distributed platform is unparalleled in scale with over 200,000 servers across 130 countries, giving customers superior perform
Most recent headlines
06/10/2025
France T l visions, France's leading broadcaster, has received the 2025 EBU ...
06/09/2025
(L-R) Dylan O'Brien and James Sweeney attend the 2025 Sundance Film Festival Twinless premiere at Eccles Theatre. (Photo by George Pimentel/Shutterstock f...
06/09/2025
LONDON Vizrt has introduced Viz Arena 6, the newest version of its all-in-one live augmented reality (AR) graphics and virtual advertising sports solution. The ...
06/09/2025
SEATTLE Amazon Web Services (AWS) will feature 56 AWS Partners making various demos that showcase the technologies and use cases shaping the future of the Media...
06/09/2025
In news that highlights the ongoing importance of video games, PBS Kids is making its first foray into gameplay content with the September 5 launch of Odd Squa...
06/09/2025
PBS chief executive Paula Kerger has sent an email to staff outlining plans to cut about 100 positions or 15% of its staff, following the loss of Federal fundin...
06/09/2025
A new era of recognition as IABM honors the people, projects and innovations driving real impact
IABM has confirmed the shortlist for the new IABM Impact Award...
06/09/2025
Vizrt, the leader in live production technology revolutionizing viewer experiences, announces new capabilities to help customers create once, adapt automaticall...
06/09/2025
Studio Technologies, a leading manufacturer of high-quality audio, video, and fiber-optic solutions, will spotlight four of its innovative audio solutions at th...
06/09/2025
DigitalGlue, creator of the award-winning creative.space managed storage platform, today announced a technology preview of Creative Intelligence (CI) powered by...
06/09/2025
Eye Filmmuseum is the Netherlands leading film museum, offering a rich variety of experiences from screenings of classic films to cultural exhibitions. With fou...
06/09/2025
The latest innovations in Grass Valley's AMPP applications will be on full display at IBC 2025, as the company brings significant updates to Playout X, its ...
06/09/2025
Disguise has announced the launch of the GX 3 , its most powerful media server ever. Built on NVIDIA's cutting-edge Blackwell GPU architecture and including...
06/09/2025
Autoscript and Autocue have announced the launch of a new advanced PTZ prompter system shared by both brands and designed to provide seamless, professional prom...
06/09/2025
Sachtler has added four new models to its award-winning aktiv and FSB Mk II fluid head ranges. The aktiv16T and aktiv18T, plus the FSB 16T Mk II and FSB 18T Mk...
06/09/2025
CGI (TSX: GIB.A) (NYSE: GIB), one of the largest independent IT and business consulting services firms in the world, will present its bold new vision for the fu...
06/09/2025
DHD has chosen IBC 2025 (Amsterdam, 12-15 September) as the launch venue for the latest version of its RM1 all-in-one portable audio production and broadcast sy...
06/09/2025
AJA Video Systems debuted IP25-R, a Mini-Converter for connecting SMPTE ST 2110 networks with 4K SDI/HDMI infrastructures. IP25-R lets broadcast, production, an...
06/09/2025
AJA Video Systems today introduced new products and updates ahead of the International Broadcasting Convention (IBC) 2025 that streamline signal flow management...
06/09/2025
Researchers map key human proteins that power coronavirus replication, pointing to new treatment strategies Findings from Scripps Research reveal promising drug...
05/09/2025
Your listening habits are as unique as you are-and this year, Spotify has introduced a wave of new features to help you personalize your experience. From playli...
05/09/2025
SBS kicks off a confident slate with the 2026 FIFA World Cup 2026 , premium dram...
05/09/2025
Today's Historic Settlement Underscores SBS's Powerful New Series The Pe...
05/09/2025
L3Harris Chief Financial Officer and Aerojet Rocketdyne President Ken Bedingfiel...
05/09/2025
PHILADELPHIA NBC Sports will present tonight's NFL Kickoff Game between the '25 Super Bowl champion Philadelphia Eagles and Dallas Cowboys on Peacock in...
05/09/2025
Warner Bros. Discovery filed a lawsuit against Gen AI company Midjourney this week, claiming that the company violated the studio's copyright....
05/09/2025
Alum Esin Ayd ng z Pens Nevermore Alma Mater' for Netflix's Wednesday The Grammy-nominated composer appears on this season's soundtrack alongside...
05/09/2025
C-SPAN and YouTube this week announced an agreement in which YouTube will sponsor C-SPAN's America 250 programming and expand access to C-SPAN's politic...
05/09/2025
LONDON Live broadcast infrastructure solutions provider Techex has added Peter Dawidzik as senior director, sales and business development....
05/09/2025
As news organizations and broadcasters face more pressure than ever to capture, verify, and distribute real-time access to breaking news, Reuters and Amazon Web...
05/09/2025
LOS ANGELES The Hollywood Professional Association (HPA) today said it has begun accepting submissions for its expanded HPA Engineering Excellence Awards, which...
05/09/2025
Sage has released an update to its most recent firmware for its Digital ENDEC model 3644....
05/09/2025
LONDON and LOS ANGELES ThinkAnalytics will debut ThinkMetadataAI, the company's latest step in recommendations, search and discovery services....
05/09/2025
WASHINGTON The Federal Communications Commissions Media Bureau has announced that the agency is initiating a phased process to lift the current freeze on major ...
05/09/2025
TORONTO Quickplay will feature its newly unveiled AI Studio that assists broadcasters and streamers in transforming their content libraries into short-form asse...
05/09/2025
Boston Conservatory at Berklee Announces Five-Year Partnership with The Verdon F...
05/09/2025
Alum Esin Ayding z Pens Nevermore Alma Mater' for Netflix's Wednesday The Grammy-nominated composer appears on this season's soundtrack alongside...
05/09/2025
Rohde & Schwarz UK awarded Silver Award under Defence Employer Recognition Schem...
05/09/2025
Back to All News
Two Desperate Souls and One Desperate Choice: As You Stood By...
05/09/2025
Back to All News
Netflix Unveils New BAKI-DOU' Anime and First Look at BE...
05/09/2025
This weekend sees another feast in store for all sport fans as RT airs a jam-packed schedule of live, free-to-air sport.
The Amgen Irish Open continues all we...
04/09/2025
(Joel Edgerton and Felicity Jones appear in Train Dreams by Clint Bentley, an of...
04/09/2025
SBS kicks off a confident slate with the 2026 FIFA World Cup2026 , premium drama...
04/09/2025
Watch the Record-breaking Koori Knockout 2025 LIVE and EXCLUSIVE on NITV and SBS...
04/09/2025
WALTHAM, Mass. Zixi, a provider of video-delivery-over-IP technology, has named Sue Mitchell as director of account management, EMEA....
04/09/2025
NEW YORK In news that highlights the importance of the NFL and sports for the TV and streaming industry, NBCUniversal is reporting record revenue for its 20th s...
04/09/2025
OTTAWA Ross Video has acquired LAMA, a Dutch-based developer of advanced audio production software known for its innovative live mixing solutions. The acquisiti...
04/09/2025
CINCINNATI GatesAir will bring its 5G passthrough demo to IBC audiences once again as interest in the technology's value for broadcast-to-mobile delivery gr...
04/09/2025
BURY ST. EDMUNDS, England Autoscript and Autocue will showcase their newly launched PTZ prompter system during IBC2025, Sept. 12-15 at the RAI Amsterdam Convent...
04/09/2025
Watch the Benn Family Band Perform I Wont Give Up on Americas Got Talent Assistant Professor Loren Benn and her family gave an emotional live performance of t...