SHARE
Facebook X Pinterest WhatsApp

Cybercriminals See 95 Percent Profit from DDoS Attacks

According to a recent Kaspersky Lab report, attackers who demand a ransom in return for not launching a DDoS attack (or to call off an attack in progress) can earn thousands of dollars in bitcoins, enabling the profitability of such attacks to exceed 95 percent. “And the fact that the owners of online sites are […]

Written By
thumbnail Jeff Goldman
Jeff Goldman
Mar 28, 2017
eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

According to a recent Kaspersky Lab report, attackers who demand a ransom in return for not launching a DDoS attack (or to call off an attack in progress) can earn thousands of dollars in bitcoins, enabling the profitability of such attacks to exceed 95 percent.

“And the fact that the owners of online sites are often willing to pay a ransom without even checking whether the attackers can actually carry out an attack (something that other fraudsters have already picked up on) adds even more fuel to the fire,” the report notes.

DDoS attacks, according to the report, can cost anywhere from $5 for a 300-second attack to $400 for a 24-hour attack.

The average price for an attack is around $25 per hour, while an attack using a cloud-based botnet of 1,000 desktops will cost the providers about $7 an hour — meaning that cybercriminals can make a profit of $18 an hour by providing DDoS as a service.

Prices can vary by target — on one DDoS-as-a-service website, Kaspersky notes, the prices for attacks on unprotected websites range from $50 to $100, while attacks on sites protected with anti-DDoS solutions cost $400 or more.

They can also vary by source — an attack using a botnet of surveillance cameras or other IoT devices will likely be cheaper than an attack using a botnet of servers.

“Cybercriminals are constantly on the lookout for new and cheaper ways of organizing botnets, as well as coming up with ever more ingenious attack scenarios that security solutions will have difficulty dealing with,” Kaspsersky Lab security researcher Denis Makrushin said in a statement.

“That’s why, as long as there are vulnerable servers, computers and IoT devices connected to the Internet, and many companies prefer not to invest in security against DDoS attacks, we can expect the profitability of DDoS atacks to continue growing, along with their complexity and frequency,” Makrushin added.

Separately, Kaspersky Lab’s 2016 IT Security Risks study found that 43 percent of businesses that fell victim to a DDoS attack last year believe their competitors were behind the attack, while 38 percent blamed cybercriminals.

Twenty percent of DDoS attack victims blamed foreign governments and secret service organizations, while 21 percent blamed disgruntled former employees.

“It is clear that businesses feel their IT systems and private data are under siege from all sides,” Kirill Ilganaev, head of DDoS protection at Kaspersky Lab, said in a statement. “With DDoS attacks becoming so frequent and so crippling, many suspect their competitors are behind them, as they look for ways to put their rivals out of action and steal their customers as a result.”

thumbnail Jeff Goldman

eSecurity Planet contributor Jeff Goldman has been a technology journalist for more than 20 years and an eSecurity Planet writer since 2009. He's also written extensively about wireless and broadband infrastructure and semiconductor engineering. He started his career at MTV, but soon decided that technology writing was a more promising path.

Recommended for you...

6 Open-Source Vulnerability Scanners That Actually Work
Chad Kime
Sep 5, 2025
Surfshark vs NordVPN (2025): Which VPN Wins? Full Breakdown
Matt Gonzales
Aug 14, 2025
The 5 Best VPNs for Small Businesses on a Budget
Matt Gonzales
Jul 16, 2025
Penetration Testing Phases: Steps, Tools & Methodology
Ray Fernandez
Jun 10, 2025
eSecurity Planet Logo

eSecurity Planet is a leading resource for IT professionals at large enterprises who are actively researching cybersecurity vendors and latest trends. eSecurity Planet focuses on providing instruction for how to approach common security challenges, as well as informational deep-dives about advanced cybersecurity topics.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.