News broke today that the computer networks of Ukrposhta, the national postal service in Ukraine, have been disrupted by a two-day distributed-denial-of-service (DDoS) cyberattack. IT security experts from Corero Network Security and Imperva Incapsula commented below.
“The reports of an extended DDoS attack on the Ukraine national postal service, demonstrate how easily unprotected organisations can have their operations crippled. With critical systems exposed to the internet and inadequate protection, denial of service attacks can have an impact way beyond taking a website down or preventing online transactions from taking place. In this case, it was a service that was reportedly brought to its knees, but outcomes for other organisations could include manufacturing processes being interrupted or halted, potentially impacting productivity, quality and even safety.
“This serves to highlight how any organisation, including those which don’t transact directly with consumers, can be seriously impacted by denial of service attacks. With the level of sophistication of today’s attackers, and without the latest generation of always-on, real-time automatic DDoS protection, all organisations are vulnerable to DDoS attacks of all sizes and durations.”
“From the description, it sounds like Ukrposhta is dealing with several repeat assaults occurring in rapid succession. Recently, such tactics have become more common due to their ability to disrupt some security measures and cause fatigue to the people in charge of the attack mitigation, forcing them to stay alert even in the quiet time between the attacks. In the first quarter of this year, we saw the number of such repeat assaults reaching an all-time-high, with over 74 percent of DDoS targets attacked at least twice in the span of that quarter.”
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional
Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes.The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.