
APAC financial sector faces 245% surge in DDoS attacks, report finds
Financial institutions in the Asia-Pacific (APAC) region saw a 245% rise in volumetric Layer 3 and 4 distributed denial-of-service (DDoS) attacks last year, accounting for 38% of such incidents globally, according to a new joint report by FS-ISAC and Akamai.
The report, titled From Nuisance to Strategic Threat: DDoS Attacks Against the Financial Sector, outlines the growing scale and persistence of DDoS attacks targeting APAC's financial sector. In 2023, APAC only accounted for 11% of these incidents, highlighting the extent of the increase.
The analysis found that over 20 financial institutions across six countries were affected by sustained DDoS campaigns in the fourth quarter of 2024, creating downstream risk that could impact up to USD $8 trillion in value. These attacks were notable not for their size, but for their persistence and continuity, a trend not previously seen in APAC.
The wave of attacks impacted multiple sectors, including retail banking, payment processing, investment banking, and financial governmental institutions. The report attributes a significant growth in application-level (Layer 7) attacks to the increasing use of application programming interfaces (APIs) within financial services. This expansion of digital infrastructure has introduced new vulnerabilities and a broader attack surface for malicious actors.
FS-ISAC's Chief Intelligence Officer and Managing Director, EMEA, Teresa Walsh, commented on the changing character of DDoS threats: "DDoS attacks are becoming increasingly sophisticated, evolving from simple network flooding to targeted, multi-dimensional assaults that exploit intricate vulnerabilities across the entire supply chain. As threat tactics continue to evolve — including those impacting APAC's increasingly digital financial systems — we must ensure our technical defenses evolve and our people, tools, and processes work seamlessly together. It is critical that we harden our infrastructure and foster a culture of continuous vigilance and collaboration to protect continuity and customer trust."
Reuben Koh, Director of Security Technology & Strategy, APJ at Akamai, highlighted the changing nature of DDoS campaigns in the region: "DDoS attacks in APAC are no longer blunt-force attempts, but sophisticated multi-vector campaigns that exploit vulnerable systems and exposed APIs. As highly coveted target sectors like financial services, commerce, and manufacturing accelerate digital growth, these continuous attacks pose growing operational and reputational risks, and organizations must work with trusted cybersecurity partners who can provide the intelligence, scalability, and agility needed to defend themselves in today's threat landscape."
The joint report also connects the increase in attacks to broader developments, including ongoing geopolitical tensions such as the Israel-Hamas and Russia-Ukraine conflicts. These events have led to a noted rise in ideologically driven hacktivism and blurred the lines between DDoS-for-Hire groups, hacktivists, and state-sponsored actors. The proliferation of DDoS-for-Hire platforms has made these attack tools accessible to a wider range of threat actors.
Globally, the financial sector remained the most targeted industry segment for Layer 3 and 4 DDoS attacks, making up 37% of incidents. This marks the second consecutive year that financial services have led in reported attack numbers, followed by gaming at 20% and manufacturing at 17%. No other sector experienced a similar surge, according to the report's findings.
The publication discusses strategies for improving defences through the FS-ISAC and Akamai-developed DDoS Maturity Model. This framework provides a benchmark for readiness and recommends targeted investment in defence strategies for organisations managing financial infrastructure and sensitive data.
The DDoS Maturity Model highlights several key actions for financial institutions and related entities: Adopt real-time behavioural analytics and traffic baselining
Implement threat intelligence-led automation for detection and mitigation
Strengthen DNS and API security with continuous testing and hardening
Use geo-IP filtering to reduce exposure from high-risk regions
The report also contains regional data, profiles of hacktivist groups, and an overview of mitigation strategies and best cyber hygiene practices. It notes the importance of mapping organisational capabilities and practices against different stages of maturity in DDoS defence, offering a structured approach to managing a rising strategic threat.
Akamai's collaboration with FS-ISAC on this research builds on the company's involvement in FS-ISAC's Critical Providers Program, which was launched to strengthen supply chain security within the financial sector.
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


Techday NZ
12 hours ago
- Techday NZ
Asia Pacific enterprises shift to genAI spend amid AI cloud push
Forrester's latest research examines the status of artificial intelligence (AI) adoption across Asia Pacific and its implications for cloud strategy and enterprise innovation. The two recent Forrester reports, The State of AI, 2024 and Embrace the AI-Native Cloud Now, provide an in-depth look at how organisations in Asia Pacific and worldwide are approaching generative AI (genAI) investments, use cases, and cloud-native transformations. Regional investment trends Forrester's The State of AI, 2024 report shows more than half of enterprise AI decision-makers globally have allocated between USD $200,000 and USD $400,000 to genAI so far. These figures signal significant but selective engagement with AI, as adoption patterns differ according to regional objectives and regulatory environments. Within Asia Pacific, one of the more distinct trends is a change in budget allocation. Enterprises in the region are more likely to transition funding from predictive AI initiatives to genAI. According to Forrester, this shift indicates "a pragmatic, value-driven approach" to investments in artificial intelligence. Leaders across Asia Pacific continue to place a premium on employee productivity and customer experience (CX), two goals that mirror global priorities. However, Asian Pacific organisations stand out by leading slightly on data literacy efforts, with 50% of respondents indicating a focus on upskilling employees for more informed, data-driven decision making. Adoption and key use cases GenAI applications are gaining traction in both operational and development domains. While IT operations is a top AI use case globally, 43% of Asia Pacific respondents said their firms are deploying genAI to support software development. This reflects the region's intent to bolster engineering productivity and accelerate the pace of digital transformation. Despite ongoing investment, barriers continue to influence adoption rates. Data privacy is the primary risk cited by firms in the region. At the same time, Asia Pacific organisations report a more acute lack of specialised technical skills compared to their counterparts elsewhere. This underlines the need for expanded workforce enablement and training to meet enterprise AI ambitions. Expectations for returns on investment (ROI) also demonstrate variability. Half of organisations surveyed anticipate realising returns within one to three years. Meanwhile, 38% are targeting a three-to-five year time frame. These figures suggest a diversity of approaches based on the scale and complexity of AI projects currently underway. Generative AI continues to spur conversation and investment across industries, albeit at varying levels depending on regional priorities and challenges. Companies that strategically align their AI efforts with measurable outcomes around customer experience and employee productivity are already reaping returns. However, addressing barriers such as data privacy, governance, and skill shortages is critical to ensuring that AI investments deliver sustainable value. That assessment comes from Frederic Giron, Vice President and Senior Research Director at Forrester. Cloud strategies for the AI era The Embrace the AI-Native Cloud Now report explores the evolving nature of public cloud platforms under the influence of widespread AI adoption. The report asserts that as genAI capabilities advance, Asia Pacific enterprises and governments must pursue AI-native cloud strategies to remain competitive and operate efficiently at scale. AI-native clouds are described as moving beyond conventional infrastructure services to offer intelligent, automated operations and application capabilities. Key features highlighted in the research include predictive operations, autoscaling, and automated handling of security updates and system patches. There is also a rapid expansion of AI-enabled development tools, such as TuringBots and low-code platforms that help streamline application design and deployment. These tools aim to raise developer productivity by automating much of the coding and debugging process while freeing teams to focus on strategic initiatives. Furthermore, embedded AI APIs are increasingly underpinning both software-as-a-service (SaaS) solutions and bespoke applications, providing elements such as predictive analytics, personalisation, and intuitive agentic AI-driven user experiences. The report notes that to fully benefit from the AI-native cloud, organisations should integrate technologies such as retrieval-augmented generation (RAG) and adopt composable architectures. The AI-native cloud is not just the next iteration of cloud technology; it is the paradigm shift enterprises need for their cloud strategies to remain competitive in an AI-driven world. Leaders must prioritise AI-native cloud strategies to improve operational efficiency, advance development capabilities, accelerate business innovation, and differentiate their customer experiences. Those comments were made by Charlie Dai, Vice President and Principal Analyst at Forrester. The research indicates that as organisations in Asia Pacific move towards more data-driven operations and cloud-native models, the focus will increasingly fall on workforce competence, governance, and risk management to ensure AI and cloud investments translate into sustained value and competitive differentiation.


Techday NZ
13 hours ago
- Techday NZ
Swimlane secures USD $45m funding to drive AI automation growth
Swimlane has secured USD $45 million in growth funding led by Energy Impact Partners and Activate Capital, with participation from Trinity Capital. The company stated that the new investment will be used to accelerate product innovation and grow its global channel ecosystem, as Swimlane moves closer to achieving profitability in the third quarter of 2025. The firm attributes its positive outlook to sustained revenue growth, improved operating efficiency, and disciplined cost management. Financial progress Since its last funding round, Swimlane has reported growth of over 110%, expanding its client base to include more than 50 Global 1000 companies, 26 U.S. federal agencies, and five of the world's largest systems integrators. Currently, 75% of its business is conducted through channel partners, reflecting increasing engagement with managed security service providers (MSSPs), value-added distributors and resellers, and global integrators. Chief Executive Officer James Brear commented, "Swimlane is achieving what no other stand-alone AI automation security company can, providing extensible, enterprise-grade AI automation with a business model that can turn a profit. We have redefined what's possible in security operations by combining agentic AI with unmatched experience in highly scalable automation use cases that help customers solve real problems both in and outside the SOC." Focus on agentic AI Swimlane has emphasised its commitment to advancing agentic AI as part of its security operations strategy. The company's AI tool, Hero, is described as the first private, agentic AI security operations companion fully integrated into the Swimlane Turbine platform. According to the company, Swimlane's solution is capable of automating more than 25 million daily actions per customer, which it states is 17 times faster than other SOAR or security hyperautomation products. Ryan Thompson, Managing Director, Tech Lending at Trinity Capital, said: "Swimlane's agentic AI platform is redefining security automation at a time when organizations need smarter, more scalable solutions. We're proud to support the Swimlane team as they help shape the future of cybersecurity." David Lincoln, Co-Founder and Managing Partner at Activate Capital, said: "Cybersecurity is drowning in complexity with too much data, too many tools and not enough integration. Swimlane cuts through the chaos with an AI automation platform that brings control to every corner of the security organization, transforming fragmentation into high-ROI outcomes. That's exactly the kind of shift the market is hungry for." Sameer Reddy, Managing Partner at Energy Impact Partners, added: "Swimlane stands out by delivering what the market desperately needs: scalable, intelligent automation that goes beyond the hype and actually works. The company's unique approach to agentic AI and hyperautomation addresses a massive gap in modern security operations and is defining the future of how organizations will protect themselves." Industry validation The company outlined a series of recent milestones that it says reinforce its market position. Among these, Swimlane is one of the first 30 companies globally to be issued the ISO42001 certification for AI. It was also ranked No. 45 on Inc.'s fifth annual Rocky Mountain list of fastest-growing private companies and named a Top 5 AI Automation for SecOps vendor by TAG Cyber. Additional recognitions include Most Valuable Pioneer in the 2025 QKS AI Maturity Matrix, and being named both a leader for technology excellence and the "Ace Performer" in the 2025 QKS Group SPARK Matrix for Security Orchestration, Automation, and Response (SOAR). Swimlane reports that it plans to use part of the new funding to further its work in responsible AI innovation and expand the use of automation in security, compliance, and IT/OT operations among its enterprise and MSSP customers. Follow us on: Share on:


Techday NZ
17 hours ago
- Techday NZ
Hitachi launches managed AI Data Hub to boost analytics success
Hitachi Vantara has launched Hitachi EverFlex AI Data Hub as a Service, a new fully managed infrastructure offering designed to address the challenges of AI data preparation for enterprises. The Hitachi EverFlex AI Data Hub as a Service provides organisations with a modern data lakehouse that combines integrated workbench capabilities for artificial intelligence (AI), business intelligence (BI), and broader enterprise data needs. The service aims to help organisations better integrate and manage their distributed data sources during a period of rapid AI adoption and complex data management requirements. Recent research from Hitachi Vantara's State of Data Infrastructure Report highlights the scale of the challenge, revealing that 98% of surveyed organisations currently use more than one storage platform. Over half of these organisations store data across on-premises, private cloud, hybrid cloud, and public cloud environments. This proliferation of data platforms complicates AI data preparation. The same research also indicates that up to 80% of AI and data projects do not succeed, with more than USD $100 billion lost annually due to difficulties in AI data preparation, enablement, and operational costs. The new service is intended to help address these issues by enabling customers to pay only for the infrastructure required, with built-in security and governance aligned to hybrid cloud models. Data management for AI Hitachi EverFlex AI Data Hub as a Service enables organisations to create a single view of enterprise data, which can be used to power both AI and BI initiatives with complete and timely information. This, according to the company, has potential to speed up insights and improve business decision-making. "Through this new offering, we're helping customers integrate, prepare and gain more control over relevant data despite the ensuing boom of unstructured data created by AI," said Jeb Horton, Senior Vice President, Global Services at Hitachi Vantara. "Ultimately, this solution empowers organisations to meet their data where it is, accelerating AI innovation and experimentation, delivering real-time insights, and significantly reducing the cost and complexity of managing today's distributed data landscape." Built on Hitachi's Virtual Storage Platform One (VSP One), the AI Data Hub integrates data in real time without duplication, providing a focus on data governance and quality at source. The system is designed to comply with data quality and regulatory requirements across diverse enterprise ecosystems. Technology integration The new service combines several technologies, including Hitachi EverFlex STaaS, VSP One and iQ, with Cisco Powered Hybrid Cloud Infrastructure that features GPU Compute and Networking as a Service. This approach aims to bring unified data management and AI capabilities into a single managed platform. According to Hitachi Vantara, VSP 360 forms the core of unified data management by supporting block, file, object, and software-defined data infrastructures. The platform allows orchestration and automation of data services, policy compliance management, and predictive capabilities through AIOps observability. Hitachi iQ infrastructure supports AI and analytics workloads through GPU servers, high-speed storage, and integrated networking to ensure performance and reliability. Quality, security, and flexible deployment options are prioritised. The integration with Zetaris software provides a modern data lakehouse for real-time connection to diverse data sources and supports federated analytics. This ensures that data can be analysed in situ while maintaining governance standards, streamlining data pipelines and removing technical and cost barriers to analytics and machine learning deployments. Business context The arrival of the Hitachi EverFlex AI Data Hub as a Service comes amid growing attention on the limitations of traditional data architectures, which struggle to support the scale and operational tempo required for contemporary AI applications. The data hub enables customers to adopt a consumption-based model, improving cost efficiency and flexibility in resource allocation. This service provides a unified platform for managing both AI and BI workloads, offering customers the opportunity to reduce operational complexity, ensure compliance, and harness business data for advanced analytics and real-time insight generation.