
Q3 2017 Akamai State of the Internet / Security Report Reveals Significant Increase in Web Application Security Attacks, Evolution of Attacker Strategies Holiday shopping season may see new attack types leveraging IoT devices, mobile platforms
Cambridge, MA | November 28, 2017
Newly released data shows that web application attacks continued to rise significantly in both the quarter-over-quarter and year-over-year timeframes, according to the Third Quarter, 2017 State of the Internet / Security Report released by Akamai Technologies, Inc. (NASDAQ: AKAM). In addition, further evaluation of the Mirai botnet and WireX malware attacks suggests that attackers may leverage IoT and Android devices to build future botnet armies.
The report found that the number of web application attacks last quarter (Q3 2017) increased 69% in total from the same timeframe last year (Q3 2016). In the last quarter alone, web application attacks rose 30% as compared to the second quarter of 2017. Over the last year, a 217% increase in attacks sourcing from the U.S. was seen, with an increase of 48% in the last quarter as compared to the prior one.
SQL injection (SQLi) attacks continued to be heavily utilized by attackers as a part of the significant rise of web application attacks. This attack vector increased 62% since last year, and 19% since last quarter. The significant increase in web application attacks, particularly injection attacks like SQLi, should come as no surprise as the latest version of the OWASP Top 10 2017 that came out last week has injection (inclusive of SQLi) as the top ranked vulnerability category. This new iteration is the first major update to the OWASP Top 10 since 2013, when injection also resided in the top spot.
Perhaps more alarming was the result of taking a closer look at the Mirai botnet and encountering the introduction of WireX malware. While smaller than its predecessor, the Mirai malware strain, which uses Internet of Things (IoT) devices, was responsible for the largest attack seen in Q3 at 109 Gbps. The ongoing Mirai activity, coupled with the introduction of WireX, which commandeers Android devices, highlights the vast potential that exists for new sources of botnet armies.
The lure of easy access to poorly-secured end nodes and easily-available source code make it likely that Mirai-based attacks won't be fading in the near future, said Martin McKeay, senior security advocate and senior editor, State of the Internet / Security Report. Our experience suggests that an army of new potential attackers comes online every day. Couple with that, the ubiquity of Android software and the growth in the Internet of Things are amplifying the risk/reward challenges that enterprises face to tremendous levels.
By the Numbers: Other highlights from Akamai's Third Quarter, 2017 State of the Internet / Security Report include:
The use of Fast Flux DNS by botnets is examined, demonstrating why the use of rapidly changing DNS information helps attackers by making it harder to track and disrupt botnets and malware.
The number of DDoS attacks in Q3 increased by 8% quarter over quarter, highlighted by a 13% increase in the average number of attacks per target (36).
Germany, despite not being among the top five source countries for DDoS attack traffic in the previous quarter, had the largest number of attack traffic source IPs in Q3 - 58,746 - 22% of the global total.
Egypt, last quarter's leader for DDoS attack traffic (44,198) fell out of the top 5 in Q3.
Australia suffered the third most web application attacks (19,115,151) despite not even registering in the top 10 in Q2.
With the holiday shopping season upon us, Akamai expects that both the monetary and emotional aspects of attack dynamics will strongly influence behavior in the fourth quarter. Criminals are likely to leverage the fact that the final quarter of the year is critical for merchants, making the merchants much more likely to pay an extortion letter threatening an attack on Black Friday or Cyber Monday than at many other times of year.
As noted in the Attack Spotlight, the code base from Mirai is still being used and is evolving, added McKeay. In addition, criminals are getting better at hiding their command and control structures, using techniques like Fast Flux DNS. It would not be surprising if, during this holiday season, we see new attacks such as those based on IoT devices or mobile platforms.
Through the SOTI/Security Report, as well as more in-depth research reports, Akamai brings you cutting-edge insight into the ever-changing landscape of attacks and attack tools - delivering information to help you and your team protect your organization.
A complimentary copy of the Q3 2017 State of the Internet / Security Report is available for download at akamai.com/stateoftheinternet-security. Download individual figures, including associated captions here.
Methodology The Akamai Third Quarter, 2017 State of the Internet / Security Report combines attack data from across Akamai's global infrastructure and represents the research of a diverse set of teams throughout the company. The report provides analysis of the current cloud security and threat landscape, as well as insight into attack trends using data gathered from the Akamai Intelligent Platform. The contributors to the State of the Internet / Security Report include security professionals from across Akamai, including the Security Intelligence Response Team (SIRT), the Threat Research Unit, Information Security, and the Custom Analytics group.
About Akamai As the world's largest and most trusted cloud delivery platform, Akamai makes it easier for its customers to provide the best and most secure digital experiences on any device, anytime, anywhere. Akamai's massively distributed platform is unparalleled in scale wi
Most recent headlines
11/12/2025
Dalet, a leading provider of cloud-native, end-to-end media workflow solutions, ...
09/12/2025
NEW YORK Fueled by football season, ad supported TV viewing in Q3 peaked in September, representing 74.7% of overall TV viewership in that month, per Nielsen...
09/12/2025
LYNDONVILLE, N.Y. Digital Alert Systems has introduced the DAS3-DC-PS, a new DC power supply option for its DASDEC-III emergency alert system. Designed to meet ...
09/12/2025
Advanced Systems Group, LLC (ASG), a technology and services provider for media creatives and content owners, announced the appointment of Macky Beheshti as Dir...
09/12/2025
Triveni Digital and Device Solutions Inc today announced that the United States Patent and Trademark Office granted them a new patent for their novel ATSC 3.0 r...
09/12/2025
ThinkAnalytics, the global leader in AI-powered data analytics for TV and streaming, today announced the appointment of James Shears as Senior Vice President of...
09/12/2025
European data management specialists appointed as SingleStore champion partner, bringing unified real-time transaction, vector and analytics capabilities to org...
09/12/2025
Broadcast Solutions, the leading systems integration group, has launched a new business, aimed at providing consultancy and design services across the media ind...
09/12/2025
WASHINGTON The Federal Communications Commission's Media Bureau has once again delayed implementation of sponsorship identification requirements for foreign...
09/12/2025
WASHINGTON #GALSNGEAR has announced two major leadership retreats in early 2026 that the group said are designed to equip women in media, entertainment, and tec...
09/12/2025
WASHINGTON With a Dec. 15 deadline looming for a new retransmission consent and carriage deal between Cox and Verizon, the two parties have started trading barb...
09/12/2025
SAN FRANCISCO Samba TV has announced that it has secured new financing from Horizon Technology Finance Corporation, an affiliate of Monroe Capital, with an init...
09/12/2025
Many cord-cutters looking to reduce their monthly cable or satellite bills are also cutting back on streaming costs, according to new research from All About Co...
09/12/2025
LAS VEGAS and NASHVILLE, Tenn. Shure technology played a critical role during the broadcast productions of the 59th Annual CMA Awards at the Bridgestone Arena i...
09/12/2025
Unveiling of new CV1, web-browser workflows and Milan roadmap for mission-critical AV environments
Nixer Pro Audio will return to Integrated Systems Europe (IS...
09/12/2025
Current Rose of Tralee Katelyn Cummins has been revealed as the third contestant...
09/12/2025
An easier approach to recreate the powerful nerve-blocking molecule found in shellfish A Scripps Research-led study resolves the challenge of synthesizing saxit...
08/12/2025
SVG Summit 2025 Technology Exhibits Preview, Part 1By SVG Staff
Monday, December 8, 2025 - 6:56 am
Print This Story | Subscribe
Story Highlights
The 2025...
08/12/2025
2025 Sports Broadcasting Hall of Fame: Bill Rasmussen, the Entrepreneur Who Drea...
08/12/2025
SVG Summit 2025 Preview: Live Production Innovation Workshop Goes Deep on ST 211...
08/12/2025
#GALSNGEAR Announces East, West Leadership Retreats for 2026By Ken Kerschbaumer
Monday, December 8, 2025 - 9:10 am
Print This Story | Subscribe
Story High...
08/12/2025
MediaKind Acquiring Harmonic's Video Business to Create New Streaming-Video ...
08/12/2025
Platinum White Paper: Sony HDR/SDR Camera Shading Techniques for Live Production...
08/12/2025
SVG Sit-Down: NESN's Kenny Elcock and Harmonic's Jean Macher Talk Next-G...
08/12/2025
Monsters Funday Football,' ESPN's Latest Live Animation Effort, Advances...
08/12/2025
SVG Sit-Down: ESPN Director Jeff Nelson on Calling the (Animated) Action on Mon...
08/12/2025
Monsters Funday Football': Louisiana Philharmonic Delivers Again With Orches...
08/12/2025
Always Was, Always Will Be Strength, Survival and Pride this January 26 on NITV,...
08/12/2025
Nielsen's robust data offering enables marketers to connect with their target audience more effectively and drive better results throughout Amazon's adv...
08/12/2025
LOS ANGELES and NEW YORK Paramount has launched a hostile takeover bid for Warner Bros. Discovery with an all-cash tender offer to acquire all of the outstandin...
08/12/2025
EMERYVILLE, Calif. Media and entertainment technology and services provider Advanced Systems Group has named Macky Beheshti as director, enterprise storage and ...
08/12/2025
DENVER MediaKind, a global provider of cloud-based video streaming technology announced today that it is acquiring the video business of Harmonic Inc. for appro...
08/12/2025
NEW YORK Nielsen has announced that its Audience Segments from Nielsen Marketing Cloud (NMC) are now available across the Amazon Ads marketplace, including the ...
08/12/2025
Marshall Electronics showcases the CV355-27X-ND3 Optical Zoom NDI (NDI HX2, NDI HX3) Camera at ISE 2026 (Booth 4N900). Designed for users seeking high-quality ...
08/12/2025
Cinnafilm today announced the immediate availability of IPx LIVE and Tachyon LIVE, delivering broadcast-grade, real-time IP video transcoding and motion-compens...
08/12/2025
Following a successful 45th anniversary year in 2024, Hiltron reports increasing demand for its wide range of satellite communication equipment manufacturing, p...
08/12/2025
Over 1.7 million people watched across the weekend
Another record-breaking year...
08/12/2025
When was the last time you updated your default playlist(s)? A default playlist keeps your station(s) on the air should your team ever miss a step in sending mu...
08/12/2025
08 Dec 2025
VEON's Beeline Kazakhstan Breaks Ground for Hyper Cloud Data Ce...
08/12/2025
Back to All News
Netflix ISP Speed Index for November 2025
Product
08 December 2025
Global
Link copied to clipboard
This month marks 15 years of the Netfl...
08/12/2025
Back to All News
Another Exciting Chapter in Our Book-to-Screen Journey and What's to Come
Entertainment
08 December 2025
Global
Link copied to clipboa...
08/12/2025
Strategic and transformative transaction would sharpen Harmonic's focus on its core Broadband business and advance its growth initiatives
Ensures continued...
08/12/2025
Copenhagen's The Epicurus is a one-of-a-kind Jazz Gastropub that presents exclusive performances curated by Jazz Pianist and Producer Sir Niels Lan Doky. Fe...
08/12/2025
Arvato Systems Receives gematik-approval for TI-Messenger tim
Approval secured for TI Messenger tim - paving the way for secure and interoperable communicat...
08/12/2025
Eurovision winner Niamh Kavanagh is the first celebrity to be revealed for the s...
08/12/2025
Changing children's lives for good: A staggering 4.6 million raised in the 2025 appeal
The people of Ireland and people all over the world have once again...
08/12/2025
It's murder on the dancefloor as The Traitors Ireland legend Paudie Moloney ...
07/12/2025
Back to All News
Netflix Takes Over the Oslo Skyline With Celebratory Troll 2 L...
06/12/2025
In a live broadcast from the Reagan National Defense Forum, L3Harris Chair and CEO Christopher Kubasik joined Morgan Brennan on CNBCs Closing Bell: Overtime. Ku...
06/12/2025
FORT LAUDERDALE, Fla. A new survey from Pixitmedia by Datacore revealed a major shift in the Media & Entertainment industry in media archiving, with 85% of resp...