Mitigating DDoS Attacks
Distributed denial-of-service (DDoS) attacks continue to increase in frequency. Cyber attackers accomplish a DDoS attack by sending so much web traffic—often through use of a botnet—at a target that it is unable to function.
The Cybersecurity and Infrastructure Security Agency (CISA) recommends the following proactive steps to aid in reducing the effects of a DDoS attack:
- Administrators should enroll in a denial-of-service (DoS) protection service that detects abnormal traffic flows and redirects traffic away from the network. The DoS traffic is filtered out, and clean traffic is passed on to the network. Administrators should create a disaster recovery plan to ensure successful and efficient communication, mitigation, and recovery in the event of an attack.
- Users and administrators should take steps to strengthen the security posture of all internet-connected devices to prevent them from being compromised.
Additionally, CISA encourages users and administrators to review the Multi-State Information Sharing and Analysis Center (MS-ISAC)’s Guide to DDoS Attacks and CISA’s Tip on Understanding Denial-of-Service Attacks for more information about how to defend networks against DDoS attacks.