February 27, 2018 By Douglas Bonderud 2 min read

Recovering after a distributed denial-of-service (DDoS) attack is expensive, and recent research showed that costs are on the rise.

According to Kaspersky Lab’s “IT Security Risks Survey 2017,” small and midsized businesses (SMBs) were on the hook for $17,000 more in 2017 than the year before. Meanwhile, the average DDoS protection cost jumped from $1.6 to $2.3 million for enterprises over the same period, as reported by Infosecurity Magazine.

Even more worrisome, previous research from the cybersecurity firm found that the rate of DDoS attacks nearly doubled from 2016 to 2017 and, much like malware, there’s no sign of slowdown. Are increased costs simply par for the course, or is there hope for scaling back DDoS spend?

Breaking Down Increasing DDoS Protection Cost

It’s one thing to consider grand totals — it costs hundreds of thousands for SMBs and millions for enterprises to recover after a DDoS attack. But how do these costs break down? Where are organizations hit hardest?

When asked, 33 percent of respondents pointed to the cost of fighting DDoS attacks directly and restoring services, while 25 percent focused on the money required to maintain backup and recovery systems. Lost revenue opportunities and damaged reputations were cited by 23 and 22 percent of companies, respectively.

It’s also worth considering the multiplicative nature of DDoS attacks. As noted by Information Security Buzz, costs can quickly climb outside the average. According to Andrew Lloyd, president of Corero Network Security, “It’s helpful to think about what a DDoS attack might cost an organization for every minute that it goes unmitigated.”

For companies that have large-volume e-commerce stores or depend upon available web services to empower mobile transactions or remote worker productivity, the longer an attack goes on, the more difficult it becomes to predict (and rein in) DDoS protection cost.

The Good News and Bad News About DDoS Protection

The news around DDoS isn’t all bad. Security solutions are getting better at detecting DDoS attacks and protecting key systems, even as researchers backtrack malicious actors.

In addition, both SMBs and enterprises now recognize the potential use of DDoS as distraction for other attacks. Instead of putting all their eggs in one basket, they can better distribute DDoS protection cost across the entire organization. Evolving cognitive security tools are also helping enterprises go beyond simple detection to discover new attack vectors and indicators of compromise.

Given the results of the study, security professionals should expect the average DDoS protection cost to keep trending upward. They should also anticipate a shift in security spending as cognitive tools give companies a fighting chance against DDoS damage.

More from

Passwords, passkeys and familiarity bias

5 min read - As passkey (passwordless authentication) adoption proceeds, misconceptions abound. There appears to be a widespread impression that passkeys may be more convenient and less secure than passwords. The reality is that they are both more secure and more convenient — possibly a first in cybersecurity.Most of us could be forgiven for not realizing passwordless authentication is more secure than passwords. Thinking back to the first couple of use cases I was exposed to — a phone operating system (OS) and a…

DOD establishes Office of the Assistant Secretary of Defense for Cyber Policy

2 min read - The federal government recently took a new step toward prioritizing cybersecurity and demonstrating its commitment to reducing risk. On March 20, 2024, the Pentagon formally established the new Office of the Assistant Secretary of Defense for Cyber Policy to supervise cyber policy for the Department of Defense. The next day, President Joe Biden announced Michael Sulmeyer as his nominee for the role.“In standing up this office, the Department is giving cyber the focus and attention that Congress intended,” said Acting…

Unpacking the NIST cybersecurity framework 2.0

4 min read - The NIST cybersecurity framework (CSF) helps organizations improve risk management using common language that focuses on business drivers to enhance cybersecurity.NIST CSF 1.0 was released in February 2014, and version 1.1 in April 2018. In February 2024, NIST released its newest CSF iteration: 2.0. The journey to CSF 2.0 began with a request for information (RFI) in February 2022. Over the next two years, NIST engaged the cybersecurity community through analysis, workshops, comments and draft revision to refine existing standards…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today