1、June 2025 From Nuisance to Strategic Threat:DDoS Attacks Against the Financial Sector FS-ISAC 2025|2 From Nuisance to Strategic Threat:DDoS Attacks Against the Financial SectorContentsExecutive Summary 3DDoS Trends:Volumetric and Application Layer Attacks 4Volumetric Attacks on the Rise 4Application
2、 Layer:The Growing Threat to APIs and Web Applications 5Increasing Sophistication of DDoS Attacks 7Geopolitical Influence 8Regional Overview 8Notable DDoS Attacks in 2024 9Notable DDoS Threat Actors 10Proactive Approaches to Mitigation 11DDoS Maturity Model 12References and Resources 16Appendix A:Di
3、fference between Volumetric&Application Layer DDoS Attacks 16Appendix B:DDoS Maturity Model 17Appendix C:Fundamentals of Cyber Hygiene for DDoS 18Appendix D:DDoS Protection Services Criteria 19 FS-ISAC 2025|3 From Nuisance to Strategic Threat:DDoS Attacks Against the Financial SectorExecutive Summar
4、yThe financial services sector is a prime target for distributed denial-of-service(DDoS)attacks.These attacks disrupt interactions between customers and their financial services providers by slowing or shutting down customer-facing websites and applications.Some attacks disrupt interactions between
5、financial firms and third-party service providers,and even their employees,by preventing access and communication.While the motivations for DDoS attacks vary,the risks of operational downtime and reputational harm can impact their targets and cause an erosion of trust in the security of the company.
6、Todays DDoS attacks arent just simple traffic floods.Sophisticated threat actors are launching precision-targeted,multi-dimensional assault strategies that exploit complex vulnerabilities in financial services cybersecurity.To help executives prepare for this new level of threat,this report provides