Business Wire

Web Application Attacks Intensify in Fourth Quarter of 2023, According to New Edgio Quarterly Attack Trends Report

Share

Edgio (NASDAQ: EGIO), the platform of choice for speed, security, and simplicity at the edge, found that web application attacks continued to increase and evolve in the fourth quarter of 2023, as reported in its new Edgio Quarterly Attack Trends Report in which the company analyzed 5.2 billion attack requests. Edgio found that the most prevalent attack mitigated was path traversal. A successful path traversal attack allows a threat actor to access files on a web server, and has surpassed the prior #1 threat, SQL injection, a common attack vector that often uses malicious SQL statements to attempt to exfiltrate sensitive data from databases behind applications.

Edgio’s report explains how path traversal attacks can lead to deep system intrusions posing a significant threat to an organization’s infrastructure and the confidentiality, integrity, and availability of data delivered over the Internet. These attacks can result in unauthorized access to content, the loss of personally identifiable information (PII), the dissemination of private/copyrighted information, or even remote code execution. Unmitigated attacks can lead to even more serious consequences, such as the deployment of ransomware or other malicious software.

“As one of the leading edge-computing providers, Edgio has unparalleled visibility into the threats facing web applications today,” said Tom Gorup, Vice President of Security for Edgio. “We are assembling our knowledge and expertise into a quarterly read-out to enable enterprises to better protect their web infrastructure and applications. As more businesses become dependent on their digital assets, it’s critical this knowledge is shared to build a safer Internet.”

The report looked at malicious requests and the different types of blocking, categorizing protection into three categories: access control rules, managed rulesets, and custom signatures. Of those that were focused on access controls, over 76% of mitigated requests were based on IP, user-agent, and country matches, highlighting just how much bad traffic can be eliminated with basic blocklisting tactics. With managed rulesets, Edgio saw a wide range of threat types blocked, with path traversal, SQL injection and cross-site scripting (XSS) attacks leading the way when it comes to OWASP attacks.

In addition, Edgio was able to review web application firewall (WAF) request denials by country of origin, while noting that attackers often leverage local resources to launch attacks in order to evade geofencing tactics. This could explain why attacks coordinated from advanced threat actors in more prominent countries did not crack Edgio’s Top 10 for the quarter.

Top countries by malicious request origin, making up nearly 62% of all requests denied, include:

  • United States – 26.3%
  • France – 17.4%
  • Germany – 9.4%
  • Russia – 8.8%

Edgio found that WAF customers used access control features to allow or deny specific request methods, using their knowledge of their own applications to inform their security controls and lower risk. The report indicates that attackers frequently leverage request methods like HEAD that return app and infrastructure information that can be used by the attacker for reconnaissance purposes and to craft a malicious payload.

Based on deep parsing of attack payloads, Edgio found that 98% of all malicious payloads fell into JavaScript Object Notation (JSON) and URL encoded form categories (used for storing and transporting data) but cautioned security teams to remain vigilant as attackers evolve in their selection of payload content types.

Best practices for digital asset protection: proactively stop threats against websites and applications

Based on its findings, Edgio recommends the following methods to best protect digital assets, including websites and applications:

  • Ensure your WAF provides a layered defense to protect organizations against the known bad, application-specific, and emerging threats. A complete solution will show a distribution of enforcement across access control rules, managed rulesets, and custom signatures.
  • Blocklists are still an effective and low-cost part of a layered security approach to safeguard Internet-facing assets. Organizations should also take advantage of threat intelligence feeds to further harden their security posture against known bad actors.
  • While managed rules are often maintained and updated by your WAF provider, it is not advisable to use a ‘set it and forget’ approach. As an application evolves and new functionalities are developed, policy reviews and analysis of managed ruleset enforcement is recommended. It is best to ensure rules are closely aligned with business application needs.
  • Organizations should take the time to understand where they are doing business and where they aren’t allowed to do business. Block the countries or sub-regions that bring no value to a brand to reduce their attack surface. Blocking embargoed countries is a great starting point, but don’t rely on this approach as a catch all for bad actors.
  • Know the application and use this knowledge to inform security solutions, like a WAF, to limit the application request methods or content types based on application needs.

To obtain a full copy of the report, click here.

About Edgio

Edgio (NASDAQCM: EGIO) helps companies deliver online experiences and content faster, safer and with more control. Our developer-friendly, globally scaled edge network, combined with our fully integrated application and media solutions, provides a single platform for delivering high-performing, secure web properties and streaming content. Companies can deliver content quicker and more securely through this fully integrated platform and end-to-end edge services, boosting overall revenue and business value. To learn more, visit edg.io and follow us on Twitter, LinkedIn and Facebook.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Media:
Sally Winship Comollo
swinship-comollo@edg.io

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

CCM Biosciences Announces Presentation of Data on its First-In-Class AML Drug Program at ASCO 202520.5.2025 23:30:00 EEST | Press release

CCM Biosciences, a diversified pharmaceutical discovery and development company, today announced the upcoming presentation of its next-generation FLT3 inhibitor drug program for acute myeloid leukemia (AML) at the 2025 Annual Conference of the American Society of Clinical Oncology (ASCO), taking place May 30 to June 3 in Chicago. Acute Myeloid Leukemia (AML) is the most severe form of leukemia with few treatment options, and a malignancy frequently driven by mutations in the FMS-like tyrosine kinase 3 (FLT3) gene. The FLT3 internal tandem duplication (ITD) and tyrosine kinase domain (TKD) mutations, particularly D835 and F691, appear in approximately 30% of AML patients, often leading to poor prognosis and resistance to existing therapies. Gilteritinib (Xospata®; Astellas Pharma, peak annual sales projection: $1.5 billion) and Quizartinib (Vanflyta®; Daiichi Sankyo) are two FDA-approved FLT3 inhibitors, with the former approved only for relapsed/refractory AML and the latter approved o

IonQ Partners with Sweden’s Einride to Develop Quantum Supply Chain and Quantum-Enhanced Logistics for Autonomous Driving Solutions20.5.2025 23:05:00 EEST | Press release

IonQ (NYSE: IONQ), a leading commercial quantum computing and networking company, today announced an investment partnership with Einride, a leading global freight mobility company that provides digital, electric, and autonomous technology to explore how quantum computing can drive the next generation of fleet optimization and logistics. Together, IonQ and Einride will develop quantum applications that address large-scale routing and scheduling problems that have traditionally challenged classical computing. By combining IonQ’s advanced quantum systems with Einride’s expertise in autonomous fleet logistics, the two companies will work to unlock new levels of efficiency, reliability, and sustainability for the global freight industry. “Einride shares our belief that quantum computing will fundamentally reshape and improve how large industries such as transportation and logistics operate,” said Niccolo de Masi, CEO of IonQ. “This partnership is aimed at creating a powerful platform with u

CCM Biosciences Announces Presentation of Data on its First-In-Class NSCLC Drug Program at ASCO 202520.5.2025 22:26:00 EEST | Press release

CCM Biosciences, a diversified pharmaceutical discovery and development company, today announced the upcoming presentation of its 4th-generation EGFR inhibitor drug program for non-small cell lung cancer (NSCLC) at the 2025 Annual Conference of the American Society of Clinical Oncology (ASCO), taking place May 30 to June 3 in Chicago. NSCLC, which accounts for 80% of lung cancer, is the most common cause of cancer death worldwide. Epidermal growth factor receptor (EGFR)-activating mutations (Del19 or L858R) are major oncogenic drivers of NSCLC. EGFR-positive NSCLC accounts for approximately 30% of all diagnosed cases of NSCLC (a similar market size to PD-L1-positive NSCLC, which is addressed by the world’s top-selling drug, Keytruda®). The current standard of care for EGFR-positive NSCLC is comprised of 3rd-generation inhibitors, most notably Osimertinib (Tagrisso®), whose annual sales exceed $6 billion. Most patients treated by tyrosine kinase inhibitors (TKIs) will eventually develop

NielsenIQ's Chief Technology Officer Mohit Kapoor Named Executive of the Year at Global Tech & AI Awards for Leading NIQ’s AI-Driven Tech Transformation20.5.2025 22:24:00 EEST | Press release

NielsenIQ (NIQ) is proud to announce that Mohit Kapoor, Chief Technology Officer, was named Executive of the Year at the inaugural Global Tech & AI Awards. This honor recognizes Mohit's exceptional leadership and visionary contributions to the tech industry, particularly in the realm of AI-powered consumer intelligence. "I am deeply honored to receive the Executive of the Year award at the Global Tech & AI Awards. This recognition is a testament to the incredible work and dedication of the entire NielsenIQ team,” said Mohit Kapoor, Chief Technology Officer, NIQ. “Together, we have redefined consumer and retail intelligence, leveraging AI to deliver unparalleled insights and drive meaningful change in the industry." Under Mohit's leadership, NIQ has adopted an AI-powered approach to its ambitious digital transformation which included a $400 million technology investment and the migration of its global client base onto Discover– a unified, cloud-based platform that seamlessly integrates

Strategic Partnership Between the Government of Morocco and TAQA Morocco, Nareva, ONEE and the Mohammed VI Investment Fund to Develop Key Power and Water Infrastructures in the Kingdom of Morocco20.5.2025 22:08:00 EEST | Press release

As part of the implementation of the commitments made in the joint declaration between His Majesty King Mohammed VI, may God Assist Him, and His Highness Sheikh Mohamed bin Zayed Al Nahyan, TAQA Morocco, in partnership with Nareva and the Mohammed VI Fund for Investment, has signed three memorandums of understanding and related development agreements with the Government of Morocco and ONEE. These agreements cover the development of structuring projects in the power, water and renewable energy sectors. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250520313620/en/ Strategic Partnership Between the Government of Morocco and TAQA Morocco, Nareva, ONEE and the Mohammed VI Investment Fund to Develop Key Power and Water Infrastructures in the Kingdom of Morocco (Photo: AETOSWire) The program aims to strengthen the Kingdom's water and energy sovereignty through the development of flexible natural gas-based power generation capacit

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye