DDoS Assaults Emerging as Primary Tools in Geopolitical Struggles, NETSCOUT Cautions

Instead of merely data theft, cyber assaults have transformed into a critical tool in geopolitical clashes, disrupting significant infrastructure and shaking public confidence in authorities. A recent report from NETSCOUT unveils that malicious actors are increasingly employing Distributed Denial of Service (DDoS) attacks to hinder elections, protests, and policy discussions, converting digital subversion into a weapon of contemporary warfare.
The recent DDoS Threat Intelligence Report from the company sheds light on how cybercriminals and activist groups have made DDoS attacks a primary form of cyber aggression, strategically targeting vital systems during instances of national turbulence.
Additionally, NETSCOUT disclosed that almost nine million DDoS assaults were documented in the latter half of 2024 — an escalation of 12.7% from the first half. Regions like Latin America and Asia Pacific witnessed a spike in attacks, with roughly 30% and 20% increases, respectively.
Escalation of DDoS Campaigns in Times of Political Unrest
Based on insights provided by NETSCOUT, politically driven DDoS attacks surged in 2024, with certain territories encountering surges of over 2,800% during major confrontations.
- Israel witnessed a 2,844% rise in assaults during hostage rescue operations and political tensions.
- Georgia experienced a 1,489% spike as lawmakers deliberated over a contentious “Russia Bill.”
- Mexico saw a 218% increase in attacks during its national elections.
- The U.K. encountered a 152% surge when the Labour Party resumed its parliamentary activities.
“DDoS has emerged as the favored weapon in cyber warfare,” stated Richard Hummel, the threat intelligence director at NETSCOUT. A pro-Russian cyber group, NoName057(16), instigated many of these offensives, repeatedly targeting government services in the U.K., Belgium, and Spain.
Enhanced Lethality of Assaults with AI and Botnets
Hackers are now leveraging artificial intelligence to intensify their assaults. The majority of DDoS-for-hire services presently exploit AI to circumvent security measures such as CAPTCHA, reducing the entry barriers and elevating success rates of the attacks.
Simultaneously, potent botnets — networks of compromised devices — are being militarized to overpower servers. Despite collaborative enforcement efforts like Operation PowerOFF, law enforcement bodies continue to face difficulties in sustaining long-term takedown effectiveness.
Despite global crackdowns such as Operation PowerOFF, fresh attack platforms swiftly replace the dismantled ones. As stated in the report, “Adversaries adapt and reorganize their networks, with no considerable decrease in the global attack volume.”
The Heightened Peril of DDoS Offensives at Present
DDoS assaults extend beyond crashing websites — they can incapacitate crucial public services like financial institutions, healthcare facilities, power networks, and emergency response systems. By striking during instances of political turmoil, threat actors compound national chaos and erode government legitimacy.
Measures to Counteract DDoS Assaults
Authorities and enterprises are racing to fortify their defenses, yet NETSCOUT cautioned that numerous organizations remain ill-equipped. The company advocates for establishments providing critical services to embrace real-time threat surveillance and more effective response strategies.
