February 27, 2018 By Douglas Bonderud 2 min read

Recovering after a distributed denial-of-service (DDoS) attack is expensive, and recent research showed that costs are on the rise.

According to Kaspersky Lab’s “IT Security Risks Survey 2017,” small and midsized businesses (SMBs) were on the hook for $17,000 more in 2017 than the year before. Meanwhile, the average DDoS protection cost jumped from $1.6 to $2.3 million for enterprises over the same period, as reported by Infosecurity Magazine.

Even more worrisome, previous research from the cybersecurity firm found that the rate of DDoS attacks nearly doubled from 2016 to 2017 and, much like malware, there’s no sign of slowdown. Are increased costs simply par for the course, or is there hope for scaling back DDoS spend?

Breaking Down Increasing DDoS Protection Cost

It’s one thing to consider grand totals — it costs hundreds of thousands for SMBs and millions for enterprises to recover after a DDoS attack. But how do these costs break down? Where are organizations hit hardest?

When asked, 33 percent of respondents pointed to the cost of fighting DDoS attacks directly and restoring services, while 25 percent focused on the money required to maintain backup and recovery systems. Lost revenue opportunities and damaged reputations were cited by 23 and 22 percent of companies, respectively.

It’s also worth considering the multiplicative nature of DDoS attacks. As noted by Information Security Buzz, costs can quickly climb outside the average. According to Andrew Lloyd, president of Corero Network Security, “It’s helpful to think about what a DDoS attack might cost an organization for every minute that it goes unmitigated.”

For companies that have large-volume e-commerce stores or depend upon available web services to empower mobile transactions or remote worker productivity, the longer an attack goes on, the more difficult it becomes to predict (and rein in) DDoS protection cost.

The Good News and Bad News About DDoS Protection

The news around DDoS isn’t all bad. Security solutions are getting better at detecting DDoS attacks and protecting key systems, even as researchers backtrack malicious actors.

In addition, both SMBs and enterprises now recognize the potential use of DDoS as distraction for other attacks. Instead of putting all their eggs in one basket, they can better distribute DDoS protection cost across the entire organization. Evolving cognitive security tools are also helping enterprises go beyond simple detection to discover new attack vectors and indicators of compromise.

Given the results of the study, security professionals should expect the average DDoS protection cost to keep trending upward. They should also anticipate a shift in security spending as cognitive tools give companies a fighting chance against DDoS damage.

More from

FYSA – Adobe Cold Fusion Path Traversal Vulnerability

2 min read - Summary Adobe has released a security bulletin (APSB24-107) addressing an arbitrary file system read vulnerability in ColdFusion, a web application server. The vulnerability, identified as CVE-2024-53961, can be exploited to read arbitrary files on the system, potentially leading to unauthorized access and data exposure. Threat Topography Threat Type: Arbitrary File System Read Industries Impacted: Technology, Software, and Web Development Geolocation: Global Environment Impact: Web servers running ColdFusion 2021 and 2023 are vulnerable Overview X-Force Incident Command is monitoring the disclosure…

What does resilience in the cyber world look like in 2025 and beyond?

6 min read -  Back in 2021, we ran a series called “A Journey in Organizational Resilience.” These issues of this series remain applicable today and, in many cases, are more important than ever, given the rapid changes of the last few years. But the term "resilience" can be difficult to define, and when we define it, we may limit its scope, missing the big picture.In the age of generative artificial intelligence (gen AI), the prevalence of breach data from infostealers and the near-constant…

Airplane cybersecurity: Past, present, future

4 min read - With most aviation processes now digitized, airlines and the aviation industry as a whole must prioritize cybersecurity. If a cyber criminal launches an attack that affects a system involved in aviation — either an airline’s system or a third-party vendor — the entire process, from safety to passenger comfort, may be impacted.To improve security in the aviation industry, the FAA recently proposed new rules to tighten cybersecurity on airplanes. These rules would “protect the equipment, systems and networks of transport…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today