IT in Manufacturing


DNS attacks on the increase, concern for SA firms

August 2016 IT in Manufacturing

Rapid advancements in enterprise technology – notably in the areas of cloud computing, mobility, intelligent appliances, and social media – have thrust us into a new era of digital business.

As the number of connected devices and the volume of data continue growing exponentially, businesses and consumers are now very reliant on the Internet. The challenge of securing the networks has becomes bigger and more complex; and the potential threats increasingly alarming.

Arbor Networks Annual Worldwide Infrastructure Security Report provides insight into the nature of today’s network security threats, and the ways in which enterprise network operators and service providers are facing up to these challenges.

Over 350 of these organisations, who provide the network infrastructure for thousands of companies in all verticals all over the world, participated in the 11th Worldwide Infrastructure Security Report. 29% of these respondents operate in the Middle East and Africa region, making the report highly relevant to local businesses.

Bryan Hamman, territory manager for sub-Saharan Africa at Arbor Networks, explains that as network providers accelerate their use of IPv6, we are seeing more volatile network environments with wider surfaces of attack.

“One third of respondents had experienced DDoS attacks against their DNS infrastructure in the past year - almost double the number from the previous year. And the financial and reputational damage from these attacks runs well into the billions of dollars,” he adds.

This onslaught has spurred organisations to bolster their investments in security tools and processes to deal with attacks: More than half of service providers now use intelligent, always-on DDoS mitigation systems (though only 19% of enterprise network operators have embraced this technology). The report shows encouraging levels of best practices to restrict recursive lookups (82%) and a marked increase in DNS traffic visibility among the respondents.

Hamman adds, however, that the most alarming findings are that 26% of enterprise network operators still have no formal security group responsible for DNS infrastructure, creating the ideal incentive for attackers to intensify efforts towards those with weaker security postures.

Respondents noted that NetFlow analysers are the most effective way of detecting threats, and the most commonly deployed. However, the second most used detection tool, firewall logs, rank a lowly sixth in terms of effectiveness. Organisations relying on firewall logs alone are unlikely to counter all DDoS threats.

“We’re also seeing two notable trends emerging in the nature of DNS attacks,” says Hamman. “Firstly, the scale of attacks is worsening – a quarter of attacks now see peak volumes of over 100 Gigabits per second. And secondly, from just 19% a couple of years ago, 33% of organisations now report attacks specifically targeting cloud-based services.

“For South African companies embracing cloud platforms over the coming years, this shift to cloud-based attacks will become a key consideration as they embark on their cloud migration journeys.”

Criminal extortion emerged as the number one motivation behind DNS attacks in this year’s report, overtaking vandalism and ideological hacktivism for the first time. “This is a significant aspect of the findings,” notes Hamman, “reflecting the increasing ‘professionalism’ of the criminal threats, and the higher financial risk that organisations are now facing.”

He says that while local organisations now have unprecedented opportunities to reach global consumers through highly networked digital marketplaces, the corollary to this is that SA companies move into the firing line for some of the world’s most aggressive DNS attack syndicates.

“South African organisations will likely see an increase in the volume and severity of network attacks over the coming years, as hackers continue to search for targets that offer the best possible chance of a successful attack.”

For more information contact Chantel Hamman, Networks Unlimited, +27 (0)11 202 8400, [email protected], www.nu.co.za





Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Enhancing cyber security for industrial drives
Siemens South Africa IT in Manufacturing
The growing connection between production networks and office networks as part of IT/OT integration and the utilisation of IoT have many benefits for industrial companies. At the same time, they also increase the risk of cyber threats. Siemens ensures that your know-how and plants are protected at all times.

Read more...
Immersion cooling systems for data centres
IT in Manufacturing
The demand for data centres in Africa is growing. The related need for increasing rack densities brings with it escalating cooling requirements.

Read more...
Transforming pulp and paper with automation and digitalisation
ABB South Africa IT in Manufacturing
The pulp and paper industry in South Africa is undergoing a significant transformation from traditional manual processes to embracing automation technologies. Automation in pulp and paper mills aims to improve various production stages, from raw material preparation to final product creation.

Read more...
New world of process control: A completely web-based process control system
Siemens South Africa IT in Manufacturing
Control technology is crucial for gaining a competitive edge in the process industry. That’s why there’s SIMATIC PCS neo - the innovative ground-breaking process control system by Siemens.

Read more...
Protecting industrial networks with resilient defence
RJ Connect IT in Manufacturing
Network security is no longer just about preventing hacking or data breaches. For operational technology networks, resilient defence and consistent uptime are crucial. They are the core tenets that underpin Moxa’s guarded uptime and resilient defence (GUARD).

Read more...
The metaverse is now: are you ready to reimagine your business?
IT in Manufacturing
The convergence of the digital and physical worlds, driven by spatial computing and the metaverse, is rapidly reshaping business landscapes. This transformation extends beyond the mere novelty of virtual reality headsets and augmented reality filters, signalling a fundamental shift in how organisations operate, collaborate and innovate.

Read more...
AI and cyber security: South Africa’s next battleground
IT in Manufacturing
Artificial intelligence is rapidly becoming a double-edged sword in the world of cybersecurity. In South Africa, where cybercrime is on the rise, AI presents both an opportunity and a threat.Artificial intelligence is rapidly becoming a double-edged sword in the world of cybersecurity. In South Africa, where cybercrime is on the rise, AI presents both an opportunity and a threat.

Read more...
Technology won’t save your business from cyber threats
IT in Manufacturing
Artificial Intelligence is reshaping the landscape of information security, presenting both unprecedented opportunities and significant new threats.

Read more...
Addressing the cooling needs of the modern data centre
Schneider Electric South Africa IT in Manufacturing
The rise in hardware density in data centres is gaining speed and is largely driven by the demands of artificial intelligence and machine learning, requiring more powerful servers and specialised hardware.

Read more...
South Africa’s next cyber security frontier
IT in Manufacturing
AI-powered agents are rapidly transforming how South African businesses operate, from chatbots managing customer inquiries to automated systems processing financial transactions. While these AI-driven assistants increase efficiency and reduce operational costs, they also present a new, and often underestimated, cybersecurity challenge: identity management.

Read more...