Thursday, 20 August 2026
Nigeria Communications Week
E-Business

DDOS Attacks see Smart Rise in Q2

Chike Onwuegbuchi8 Aug 20220 Comments
DDOS Attacks see Smart Rise in Q2
Kindly share this post

During Q2 of this year, distributed denial of service (DDOS) attacks reached new heights as both the number of smart attacks, and the average duration of these attacks, increased sharply. Compared to…

During Q2 of this year, distributed denial of service (DDOS) attacks reached new heights as both the number of smart attacks, and the average duration of these attacks, increased sharply.

Compared to the same period last year, the average duration of a DDOS attack rose 100 times, reaching 3 000 minutes.

This was revealed by Kaspersky in its DDOS attacks in Q2 2022 report.

Compared to figures from Q2 2021, Kaspersky’s solutions defended its users against approximately 2.5 times more DDOS attacks. At the same time, in contrast to the beginning of the year with its dramatic surge in attacks due to hacktivist activity, absolute numbers decreased in Q2 2022.

However, Kaspersky says this does not mean that the DDOS market has cooled down, but rather that attacks have changed in quality, becoming longer and more complicated.

The average duration of an attack in Q2 2022 was around two days, which is 100 times longer than in Q2 2021, when an attack lasted for only 30 minutes on average.

Some of the attacks in the past quarter lasted for days or even weeks. A record was set by an attack with a duration of 41 441 minutes, which is just shy of 29 days.

Alexander Gutnikov, a security expert at Kaspersky, says it is extremely expensive to continue these attacks for such a long duration, particularly if it is ineffective due to being filtered by protection solutions.

“When bots are constantly active, the risk of botnet wear-off, node failure or control centre detection increases. The extreme duration of these attacks and the growth in the number of smart and targeted DDoS attacks makes us wonder about the capabilities, professional affiliation and funding sources of the organisers,” he adds.

Smart attacks

The company also said the share of smart attacks almost broke the four-year record, accounting for nearly 50% of the total.

Gutnikov says DDoS attacks are becoming increasingly accessible to a wider audience. “In many cases, they no longer require special technical knowledge and skills. In order to separate professionals from amateurs, we use the term 'smart attack'. To organise this kind of attack, a criminal should be equipped with technical knowledge and understand how networks and data exchange protocols work.”

He says in general, layer three (L3) and layer four (L4) attacks can be described as regular ones, while layer seven attacks (L7) are already smart. For an accurate 'diagnosis', an analysis of each specific case is required.

“For example, a DNS Amplification flood, or L4 level, is now very easy to organise, although it caught everybody off guard back in 2013. Back then it could be classified as a smart attack, but today it’s available to a wide range of attackers without special skills and ranked as an ordinary one.”

Another example is a fragmentation attack of the L3 level. If targeted skillfully (for example, to a vulnerable router), it can cause a lot of damage even with a small rate.

“In this case, it would be correct to classify it as a smart attack, because it requires the bad actor to understand the vulnerability and, as a result, choose a relatively simple but effective tool,” Gutnikov says.

Оn the other hand, application level attacks are not always smart, he explains. “An HTTP request attack without a host header will formally be considered an L7 attack, but this is only possible if the botnet is configured incorrectly. Therefore, the attacker does not understand the basic principles of HTTP protocol, and this attack should be classified as a regular one.”

C
Published by

Chike Onwuegbuchi

Trained and practicing journalist passionate about telecommunications, fintech, cybersecurity, and digital economy reporting.

More in E-Business
E-Business

The Biggest Cost of Nigeria’s Crypto Stamp Duty Not 1.5%, But What Happens Next

By Chike Onwuegbuchi17 Aug 2026

There is a strange thing about regulation: everybody wants clarity until clarity comes with a bill. Given that is probably why the conversation around Nigeria’s proposed 1.5% stamp duty on virtual asset transactions has quickly become a debate about the number. Is 1.5% too much? Will it make crypto more expensive? Will users simply move elsewhere?

E-Business

Analytics Intelligence Partners Open Access Data Centres to Advance Sovereign AI and Cloud Solutions Across Africa

By Chike Onwuegbuchi17 Aug 2026

Analytics Intelligence [AI], a leading provider of artificial intelligence and data analytics solutions, has entered into a strategic partnership with Open Access Data Centres (OADC), a WIOCC Group company, to develop sovereign AI and cloud solutions that enable African enterprises to deploy secure, scalable, and locally hosted AI infrastructure.