{"id":6141,"date":"2025-08-14T10:03:36","date_gmt":"2025-08-14T10:03:36","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/08\/14\/web-ddos-app-exploitation-attacks-saw-a-huge-surge-in-first-half-of-2025\/"},"modified":"2025-08-14T10:03:36","modified_gmt":"2025-08-14T10:03:36","slug":"web-ddos-app-exploitation-attacks-saw-a-huge-surge-in-first-half-of-2025","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/08\/14\/web-ddos-app-exploitation-attacks-saw-a-huge-surge-in-first-half-of-2025\/","title":{"rendered":"Web DDoS, App Exploitation Attacks Saw a Huge Surge in First Half of 2025"},"content":{"rendered":"<p>    Web DDoS, App Exploitation Attacks Saw a Huge Surge in First Half of 2025<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>The cybersecurity landscape experienced an unprecedented escalation in digital threats during the first half of 2025, with Web Distributed Denial of Service (DDoS) attacks surging by 39% compared to the second half of 2024.<\/p>\n<p>The second quarter alone witnessed a staggering 54% quarter-over-quarter spike in attack activity, marking the highest levels on record and signaling a fundamental shift in how cybercriminals orchestrate their <a href=\"https:\/\/cybersecuritynews.com\/incorporating-cybersec-credentials-into-marketing-campaigns\/\" target=\"_blank\" rel=\"noreferrer noopener\">campaigns<\/a>.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEj7ofg4EfzcjSSvge6KHAFyp5j9Ur9lYbV6UtMehQeUWqyp8oZW4v2T1wYgKyW98LkybS2fnqBihXwgaZQ5ZyhR5HXupj37Nt-l89G8-sy1AolcAk5OexXRrkYKR0IAcAs-01EmTJHprCikRIf5kjtZCf-rQc3khFi6MG2fMDMqHqDACdmdXLOs3p9HIxY\/s16000\/Geographic%2520distribution%2520of%2520Web%2520DDoS%2520attack%2520activity%2520in%25202025%2520and%25202024%2520%28source%2520-%2520Radware%29.webp?ssl=1\" alt=\"\"><figcaption class=\"wp-element-caption\">Geographic distribution of Web DDoS attack activity in 2025 and 2024 (source \u2013 Radware)<\/figcaption><\/figure>\n<\/div>\n<p>This dramatic increase represents more than just a numerical surge; it reflects a strategic evolution in attack methodologies.<\/p>\n<p>Unlike previous years characterized by massive volumetric assaults, threat actors in 2025 have pivoted toward smaller, more sustained attacks predominantly operating under 100,000 requests per second (RPS).<\/p>\n<p>This tactical shift demonstrates the growing influence of automated tools enhanced by generative artificial intelligence, effectively democratizing DDoS capabilities among loosely coordinated threat groups and enabling new actors to enter the cybercrime ecosystem.<\/p>\n<p>Radware researchers <a href=\"https:\/\/www.radware.com\/blog\/threat-intelligence\/2025-h1-global-threat-analysis\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">identified<\/a> that despite the prevalence of smaller-scale attacks, peak capabilities remain formidable, with the largest recorded Web DDoS attack reaching an extraordinary 10 million RPS in the first quarter.<\/p>\n<p>The company\u2019s comprehensive analysis revealed that application-layer exploitation has become equally concerning, with <a href=\"https:\/\/cybersecuritynews.com\/linux-centos-web-panel-vulnerability\/\" target=\"_blank\" rel=\"noreferrer noopener\">malicious web<\/a> transactions increasing by 33% compared to the latter half of 2024.<\/p>\n<p>Remarkably, the volume of malicious activity observed in just six months already accounts for 87% of the total recorded throughout the entire previous year.<\/p>\n<p>The threat landscape has been further complicated by a parallel surge in bad bot activity, which increased by 57% during the same period.<\/p>\n<p>These automated threats, designed for fraud, credential stuffing, and data scraping operations, mirror the trajectory of application-layer attacks and underscore the growing sophistication of cybercriminal infrastructure.<\/p>\n<p>Hacktivist groups have also intensified their operations, claiming nearly 9,200 <a href=\"https:\/\/cybersecuritynews.com\/ddos-service-provider-seized\/\" target=\"_blank\" rel=\"noreferrer noopener\">DDoS attacks<\/a> on Telegram platforms, representing a 62% increase over the first half of 2024.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-ai-enhanced-attack-automation-and-persistence-tactics\"><strong>AI-Enhanced Attack Automation and Persistence Tactics<\/strong><\/h2>\n<p>The emergence of AI-enhanced attack tools has fundamentally transformed the persistence and execution strategies employed by modern threat actors.<\/p>\n<p>Traditional DDoS campaigns relied heavily on brute-force volumetric attacks that were easily detectable and often short-lived.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEhNjj77wxyTFZVamvyJGq_11SHe9pwaGY5jOpj7e0meIRTcgAmnK07bvJX9aGN4QTi3_UQC-IzS6CJ8MwkR3cDg8GhcMhC0-XOPJKgAbBB5Z7C99ku26Nst26kCpHczDXns3Qy0_4nU1rgMkeUsxyT5yp3fyNtEKmEs_h5Upb9PSAPTK-N9II5baCllYwk\/s16000\/Web%2520application%2520and%2520API%2520attacks%2520by%2520category%2520%28source%2520-%2520Radware%29.webp?ssl=1\" alt=\"\"><figcaption class=\"wp-element-caption\">Web application and API attacks by category (source \u2013 Radware)<\/figcaption><\/figure>\n<\/div>\n<p>However, the integration of machine learning algorithms and <a href=\"https:\/\/cybersecuritynews.com\/mitigating-data-leakage-risks\/\" target=\"_blank\" rel=\"noreferrer noopener\">generative AI <\/a>has enabled attackers to develop more nuanced approaches that can adapt in real-time to defensive countermeasures.<\/p>\n<p>These AI-driven systems can automatically adjust attack parameters such as request patterns, timing intervals, and target selection to maintain persistence while evading detection mechanisms.<\/p>\n<p>The shift toward sustained, lower-volume attacks reflects this technological evolution, as automated systems can maintain prolonged campaigns with minimal human intervention.<\/p>\n<p>Vulnerability exploitation, which accounts for over one-third of all application-layer attacks, has become increasingly sophisticated through AI-assisted reconnaissance tools that can identify and exploit weaknesses faster than traditional manual methods.<\/p>\n<p>The democratization of these capabilities through <a href=\"https:\/\/cybersecuritynews.com\/blue-team-tools\/\" target=\"_blank\" rel=\"noreferrer noopener\">open-source tools<\/a> and AI enhancement has lowered the technical barriers for entry, enabling a broader range of actors to conduct effective cyber operations with unprecedented coordination and persistence.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 92%,rgb(169,184,195) 100%)\"><strong><code>Boost\u00a0your\u00a0SOC and help your team protect your business with free top-notch threat intelligence:\u00a0<a href=\"https:\/\/intelligence.any.run\/plans\/?utm_source=csn&amp;utm_medium=article&amp;utm_campaign=alert_fatigue&amp;utm_content=lookup_plan&amp;utm_term=120825\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Request TI Lookup Premium Trial<\/a>.<\/code><\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/web-ddos-app-exploitation-attacks\/\">Web DDoS, App Exploitation Attacks Saw a Huge Surge in First Half of 2025<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Tushar Subhra Dutta<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/web-ddos-app-exploitation-attacks\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Web DDoS, App Exploitation Attacks Saw a Huge Surge in First Half of 2025 The cybersecurity landscape experienced an unprecedented escalation in digital threats during the first half of 2025, with Web Distributed Denial of Service (DDoS) attacks surging by 39% compared to the second half of 2024. The second quarter alone witnessed a staggering [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,649],"tags":[130],"class_list":["post-6141","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-threats","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/6141"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=6141"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/6141\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=6141"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=6141"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=6141"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}