Express Computer
Home  »  News  »  Millions of bad bots attacks on e-commerce sites detected

Millions of bad bots attacks on e-commerce sites detected

0 93

Amid the online shopping spree during the holiday season, security researchers with Barracuda Networks, a leading provider of cloud-enabled security solutions, have detected millions of bad bots attacks on e-commerce websites.

These bad bots attacks were used by cybercriminals to run distributed denial of service (DDoS) attacks, make fraudulent purchases, and scan for vulnerabilities they can exploit, the company said.

“While analysing which Internet System Provider or Autonomous System Number has been the source of this bad bot activity, our researchers identified Indian mobile provider Airtel’s subnet ranges in the mix, as well as some of the big public cloud providers like Google Cloud, Amazon,” Murali Urs, Country Manager-India, Barracuda Networks, said in a statement.

“This shows that even though the source of bots is international, it would depend on the bot and the site it is targeting.”

Barracuda Networks said it detected the bad bots attacks in November.

The company said that its security researchers ran the “Barracuda Advanced Bot Protection” in front of a test web application, and detected a staggering number of bad bots in just a few days with millions of attacks coming in from thousands of distinct IP addresses.

Bad bot personas are bots that have been identified as malicious based on their pattern of behaviour.

They are grouped by “User-Agent”, some of which are good. For example, GoogleBot, which crawls sites and adds them to search rankings, is good and should not be blocked.

Cybercriminals have been using different ways to spoof good “User-Agents” to conduct the attacks.

The bad bots spoof these known good User-Agents, which would need deeper scrutiny to tell them apart.

With the holiday shopping season expected to continue in full swing till the New Year, e-commerce teams should start taking necessary steps to safeguard their applications against bad bots, Barracuda Networks said.

They must install a well-configured web application firewall as a service solution and make sure that the application security solutions include anti-bot protection to effectively detect advanced automated attacks, the company added.

–IANS

Get real time updates directly on you device, subscribe now.

Leave A Reply

Your email address will not be published.

LIVE Webinar

Digitize your HR practice with extensions to success factors

Join us for a virtual meeting on how organizations can use these extensions to not just provide a better experience to its’ employees, but also to significantly improve the efficiency of the HR processes
REGISTER NOW 
India's Leading e-Governance Summit is here!!! Attend and Know more.
Register Now!
close-image
Attend Webinar & Enhance Your Organisation's Digital Experience.
Register Now
close-image
Enable A Truly Seamless & Secure Workplace.
Register Now
close-image
Attend Inida's Largest BFSI Technology Conclave!
Register Now
close-image
Know how to protect your company in digital era.
Register Now
close-image
Protect Your Critical Assets From Well-Organized Hackers
Register Now
close-image
Find Solutions to Maintain Productivity
Register Now
close-image
Live Webinar : Improve customer experience with Voice Bots
Register Now
close-image
Live Event: Technology Day- Kerala, E- Governance Champions Awards
Register Now
close-image
Virtual Conference : Learn to Automate complex Business Processes
Register Now
close-image