AI-assisted DDoS attacks rise 32% as APAC threats grow more sophisticated

0

StormWall has released a quarterly report analysing distributed denial-of-service (DDoS) activity in Asia Pacific during the second quarter of 2026, reporting an 83% year-on-year increase in attacks observed against its customers in the region.

The company said it mitigated 1.72 million DDoS attacks targeting APAC customers between April 1 and June 30, 2026.

StormWall attributed the change to more accessible “DDoS-for-hire” services and AI-enabled tooling, which it said are lowering the barrier for attackers to run more advanced campaigns. Based on the company’s estimates, AI-assisted attacks increased 32% year on year.

The report also pointed to changes in attack techniques and scale. StormWall said the average intensity of Layer 7 attacks rose 2.5 times compared with the previous quarter, while multi-vector campaigns grew 62% year on year. It also reported an increase in botnet size, with the average number of connected devices used in an attack rising from 15,000 in Q2 2025 to 60,000 in Q2 2026.

StormWall said the motive mix in APAC differed from its global data for the same period. It estimated that 76% of APAC attacks were commercially motivated, with the remaining 24% linked to hacktivist campaigns. Globally, the company said hacktivist groups were linked to more than 70% of attacks observed during the quarter.

By sector, telecommunications accounted for 26% of attacks in APAC, followed by entertainment (19%) and government (16%), according to the report.

Geographically, StormWall reported China and India accounted for 21% and 20% of attacks respectively, together representing 41% of APAC attacks, up from 37% in Q1. Indonesia was the third most attacked country, with a 13% share.

“For companies in APAC, DDoS has become a more persistent and significant commercial risk than ever before,” said Ramil Khantimirov, founder and CEO of StormWall. “Attackers now have access to larger botnets, AI-assisted tooling and multi-vector techniques that can dynamically change vectors during a campaign. Defenses therefore need visibility and mitigation at both layers, especially at Layer 7, where malicious requests can closely resemble legitimate traffic.”

StormWall said the report is based on DDoS attacks mitigated for its APAC customers from April through June 2026, analysed through its distributed network of scrubbing centres in Asia Pacific, the US, Europe and the Middle East, including a facility in Singapore. The company said its network provides more than 8 Tbit/s of filtering capacity.

You can read the full report here.

Share.

Comments are closed.