According to the Corporate IT Security Risks 2016 study conducted by Kaspersky Lab and B2B International among more than 4,000 representatives from 25 countries including the UAE, a single DDoS attack can cost a company up to over $1.6 million, though that figure depends to a large extent on how quickly the attack is detected.
Companies of various sizes affected by DDoS attacks over the last 12 months were asked what costs they incurred as a result. It turned out the biggest expenses for medium and large companies (20% and 19% respectively) were caused by changes to their credit and insurance ratings, which is hardly surprising considering many DDoS attacks become public knowledge. For small companies, the largest DDoS-related expenditure item was overtime payments to employees (17%). DDoS attacks are also cited as one of the top five threats that can force companies to hire new employees, with 37% of organisations that fell victim to such attacks planning to significantly increase their IT staff.
Other major DDoS-related costs included customer compensation (12%), upgrading IT infrastructure and software (10%), staff training (10%) and PR expenses to restore a company’s reputation (9%). This can bring the average cost of a DDoS attack to about $106,000 for smaller companies and up to more than $1.6 million for enterprises. One important finding from the study was that if an attack is detected in the first 24 hours, the costs can be almost halved compared to an attack detected over a day later.
“Our research demonstrates that DDoS attacks are one of the most expensive cyberthreats for companies. They are more expensive than a virus or a cryptomalware infection. Even a single DDoS attack can disable the online services for long periods of time, damage the company’s reputation and deprive it of its current or future customers. There have been incidents where prolonged DDoS attacks have led to the bankruptcy and closure of successful online businesses. Proactive protection allows a company to quickly detect an ongoing DDoS attack and, in the case of a solution like Kaspersky DDoS Protection, to find out as soon as an attack begins thanks to the DDoS Intelligence system, thereby warding off any potential risks,” says Alexey Kiselev, Project Manager, Kaspersky DDoS Protection.
To learn more about DDoS attacks, please view our Kaspersky DDoS Intelligence reports. More information about the protection offered by Kaspersky Lab against DDoS attacks can be found here.