eCommerce website face million on bad bots attack


By MYBRANDBOOK


eCommerce website face million on bad bots attack

The security researchers with Barracuda Networks, a leading provider of cloud-enabled security solutions, have detected millions of bad bots attacks on e-commerce websites.

 

Cybercriminals used these bad bots attacks to run distributed denial of service (DDoS) attacks, make fraudulent purchases, and scan for vulnerabilities they can exploit, the company said.

 

"While analysing which Internet System Provider or Autonomous System Number has been the source of this bad bot activity, our researchers identified Indian mobile provider Airtel's subnet ranges in the mix, as well as some of the big public cloud providers like Google Cloud, Amazon," Murali Urs, Country Manager-India, Barracuda Networks, said in a statement.

 

"This shows that even though the source of bots is international, it would depend on the bot and the site it is targeting."

 

The company said it detected the bad bots attacks in November. Also, that its security detected a staggering number of bad bots in just a few days with millions of attacks coming in from thousands of distinct IP addresses.

 

Bad bot personas are bots that have been identified as malicious based on their pattern of behaviour.

 

They are grouped by "User-Agent", some of which are good. For example, GoogleBot, which crawls sites and adds them to search rankings, is good and should not be blocked.

 

Different ways to spoof good "User-Agents" to conduct the attacks are being used by the cybercriminals. The bad bots spoof these known good User-Agents, which would need deeper scrutiny to tell them apart.

 

With the holiday shopping season expected to continue in full swing till the New Year, e-commerce teams should start taking necessary steps to safeguard their applications against bad bots, Barracuda Networks said.

 

They must install a well-configured web application firewall as a service solution and make sure that the application security solutions include anti-bot protection to effectively detect advanced automated attacks, the company added.

 E-Magazine 
 VIDEOS  Placeholder image

Copyright www.mybrandbook.co.in @1999-2024 - All rights reserved.
Reproduction in whole or in part in any form or medium without express written permission of Kalinga Digital Media Pvt. Ltd. is prohibited.
Other Initiatives : www.varindia.com | www.spoindia.org