{"id":955,"date":"2025-12-19T10:53:10","date_gmt":"2025-12-19T09:53:10","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=955"},"modified":"2026-05-29T22:49:05","modified_gmt":"2026-05-29T20:49:05","slug":"what-is-a-ddos-attack","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/en\/knowledgebase\/what-is-a-ddos-attack\/","title":{"rendered":"What is a DDoS attack?"},"content":{"rendered":"\n<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\">In network administration and enterprise cloud architecture, maintaining consistent uptime and host availability is a primary operational requirement. A <strong>DDoS Attack<\/strong> (Distributed Denial-of-Service) represents a malicious cyberattack where an unauthorized actor deliberately floods a targeted server, service, or network infrastructure with an overwhelming volume of internet traffic.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The primary objective of this disruption is to saturate the target&#8217;s computing resources and network bandwidth, rendering the connected services, web interfaces, and corporate applications completely inaccessible to legitimate users.<\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/what-is-a-ddos-attack\/#Threat_Vectors_and_Systemic_Vulnerabilities\" >Threat Vectors and Systemic Vulnerabilities<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/what-is-a-ddos-attack\/#Core_Motivations_Behind_DDoS_Campaigns\" >Core Motivations Behind DDoS Campaigns<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/what-is-a-ddos-attack\/#Historic_Scales_and_Downstream_Impact\" >Historic Scales and Downstream Impact<\/a><\/li><\/ul><\/nav><\/div>\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Threat_Vectors_and_Systemic_Vulnerabilities\"><\/span>Threat Vectors and Systemic Vulnerabilities<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<\/div>\n\n<div id=\"mybox-1231638137\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Early access<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Still need help?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contact our customer service team.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Message us<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">The underlying mechanism of a distributed attack relies on using a massive array of compromised devices distributed globally\u2014often referred to as a <strong>botnet<\/strong>.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>The Exploitation of IoT Ecosystems:<\/strong> The rapid expansion of the Internet of Things (IoT) has significantly expanded the available attack surface for threat actors. Because many consumer IoT devices lack sophisticated, built-in security controls, firmware updates, or robust password lifecycles, attackers can easily compromise them at scale. These infected devices operate silently in the background, combining into a coordinated bot network capable of launching massive traffic floods against a single target.<\/li>\n\n\n\n<li><strong>The Rise of Remote Endpoint Risks:<\/strong> The continuous increase in decentralized, remote network footprints further complicates perimeter defense. Unhardened home office networks and unpatched client terminals provide accessible entry points for attackers looking to harvest resources to expand their distributed deployment botnets.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Core_Motivations_Behind_DDoS_Campaigns\"><\/span>Core Motivations Behind DDoS Campaigns<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The actors who launch distributed denial-of-service attacks scale from isolated individuals to highly organized syndicates, driven by a wide range of operational objectives:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Hacktivism and Ideological Disapproval:<\/strong> Disgruntled individuals, ideological groups, or hacktivist cells frequently deploy traffic floods to take down corporate or government portals. Their goal is generally to express disapproval, draw public attention to a specific cause, or exploit known cybersecurity gaps for personal amusement.<\/li>\n\n\n\n<li><strong>Unfair Competitive Disruption:<\/strong> Some campaigns are launched for malicious financial reasons. In these scenarios, a bad actor disrupts the online operations of a competing enterprise during high-volume trading windows, shifting customer traffic away from the disabled target toward alternative market providers.<\/li>\n\n\n\n<li><strong>Digital Extortion and Ransomware Deployments:<\/strong> Advanced threat patterns frequently pair traffic denial with extortion demands. Attackers hit an enterprise network with an initial wave of traffic to demonstrate capability, threaten a prolonged system outage, or deploy background ransomware payloads, demanding large financial payouts to halt the disruption.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Historic_Scales_and_Downstream_Impact\"><\/span>Historic Scales and Downstream Impact<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">No digital infrastructure is entirely immune to distributed traffic floods. Even global cloud operators with massive network capacity have faced historically significant saturation attempts:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Amazon Web Services (February 2020):<\/strong> Witnessed one of the largest recorded traffic anomalies in history, where a reflection-based attack hit their infrastructure boundaries at a peak rate of 2.3 Terabits per second (Tbps), far outscaling the major attack directed at GitHub two years prior.<\/li>\n\n\n\n<li><strong>Compounding Operational Damage:<\/strong> The consequences of a successful denial-of-service attack go beyond temporary downtime. Organizations frequently experience significant loss of direct business transactions, clean traffic reductions, extensive clean-up costs, and severe, long-term brand reputation damage across their user base.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[10],"manual_kb_tag":[982,983,984,985,986,987,988,989,990,991,992,993,994,980,981],"class_list":["post-955","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-safety","manual_kb_tag-ddos-attack","manual_kb_tag-ddos-mitigation","manual_kb_tag-ddos-protection","manual_kb_tag-botnet-attacks","manual_kb_tag-ransomware","manual_kb_tag-extortion-attacks","manual_kb_tag-cybercrime","manual_kb_tag-cyberattack","manual_kb_tag-network-security","manual_kb_tag-internet-of-things","manual_kb_tag-internet-of-things-security","manual_kb_tag-remote-work-security","manual_kb_tag-amazon-web-services","manual_kb_tag-distributed-denial-of-service","manual_kb_tag-denial-of-service-attack"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/955","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":1,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/955\/revisions"}],"predecessor-version":[{"id":8949,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/955\/revisions\/8949"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/media?parent=955"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manualknowledgebasecat?post=955"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb_tag?post=955"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}