Information alert: DDoS assaults surge 75% in 2025; Link11 says assaults now sustained, not sporadic – Cyber Tech
FRANKFURT, Mar. 2, 2026, CyberNewswire — Link11 has revealed its European Cyber Report 2026, revealing that DDoS assaults reached a brand new stage in 2025 and have grow to be a everlasting stress issue for digital infrastructures.
The report exhibits that the variety of documented assaults within the Link11 community rose by 75% in 2025, following explosive development within the earlier 12 months (+137%). This establishes DDoS assaults as a everlasting structural burden for firms and significant infrastructures in Europe.
Report values: Terabit assaults have grow to be frequent. Whereas a single 1.4 Tbit/s assault was thought of distinctive in 2024, three assaults surpassing 1 Tbit/s had been recorded in 2025. The strongest assault measured was 1.33 Tbit/s, with over 120 million packets per second.
A coordinated collection of assaults totaled 509 terabytes of information. This corresponds to the each day knowledge visitors of a medium-sized metropolis of round 120,000 folks, or over 170,000 hours of HD video streaming.
From spikes to siege
The rise within the period of assaults is especially alarming. The longest recorded assault lasted 12,388 minutes – over eight days straight. In 2025, lively DDoS assaults had been noticed 88% of the time. This equates to 322 days per 12 months when programs within the Link11 community had been focused by assaults. This successfully makes the state of emergency the norm.
On the identical time, assault dynamics are altering. There’s a better than 70% chance that an preliminary assault might be adopted by no less than one further assault. On common, 2.8 follow-up assaults had been recorded after an preliminary incident – an 80% improve in comparison with the earlier 12 months.
jung
“We’re experiencing a transparent paradigm shift. DDoS is now not a disruptive one-off occasion however moderately a everlasting strategic burden on digital enterprise fashions,” says Jens-Philipp Jung, founder and CEO of Link11. “Those that solely react when an assault happens have already misplaced. Resilience should be everlasting, automated, and architecturally anchored.”
Hybrid assault techniques
Along with large bandwidth, analysts have noticed a strategic mixture of high-volume assaults and long-lasting, low-and-slow situations. Attackers systematically check protecting mechanisms, differ patterns in actual time, and more and more shift their actions to the appliance stage.
“It’s not simply the dimensions of an assault that issues anymore, but in addition its endurance and adaptableness,” Jung continues. “Trendy DDoS campaigns mix excessive bandwidth with tactical persistence. That’s precisely what makes them so harmful.”
Layered protection
The report’s findings make it clear that DDoS assaults should not only a technical drawback anymore. These assaults straight impression income, fame, SLA commitments, and regulatory necessities.
Subsequently, along with highly effective, always-on DDoS safety, defending net functions and APIs is turning into strategically vital. Trendy assaults more and more goal Layer 7, imitate professional visitors, and trigger gradual efficiency degradation with out triggering traditional alarm thresholds. Net Utility & API Safety (WAAP) is a key suggestion: digital enterprise processes can solely be operated in a completely secure and predictable method by way of a mixture of community safety, behavior-based evaluation on the software stage, and AI-supported bot detection.
Corporations ought to take a holistic method to their safety structure.
•At all times-on DDoS safety as an alternative of reactive emergency measures
•WAAP options to safe net functions and APIs
•Automated, AI-powered detection and mitigation
Integration of DDoS situations into enterprise continuity and disaster plans
“Digital availability is a aggressive issue as we speak,” says Jung. “Cyber resilience determines whether or not enterprise fashions can stand up to fixed technological, operational, and geopolitical assaults.”
About Link11: Link11 is a specialised European IT safety supplier that protects international infrastructures and net functions from cyberattacks. Its cloud-based IT safety options assist firms worldwide strengthen the cyber resilience of their networks and significant functions and keep away from enterprise interruptions. Link11 is a BSI-qualified supplier of DDoS safety for vital infrastructure. With PCI-DSS, SOC2 Kind 2, C5, and ISO-27001 certifications, the corporate meets the very best requirements in knowledge safety.
Media contact: Lisa Froehlich, Link11 GmbH simply did it, l.froehlich@link11.com
Editor’s observe: This press launch was offered by CyberNewswire as a part of its press launch syndication service. The views and claims expressed belong to the issuing group.
