In this quarterly report, Akamai analyzes DDoS and web application attack trends from Q2 2015. Some key findings include:
- The number of DDoS attacks more than doubled compared to Q2 2014, with SYN and SSDP being the most common vectors.
- The largest attack exceeded 240 Gbps and lasted over 13 hours.
- Multi-vector attacks combining SYN and UDP reflection increased.
- Online gaming remained the most targeted industry. China was the largest source of non-spoofed attacks.
- Web application attacks grew, with Shellshock attacks targeting financial services. The report examines WordPress plugin vulnerabilities and risks of allowing Tor exit node traffic.