UAE’s Digital Siege: DDoS Attacks Triple as Tactics Shift Toward Persistence

UAE’s Digital Siege: DDoS Attacks Triple as Tactics Shift Toward Persistence

The UAE’s digital landscape is facing an unprecedented wave of cyber aggression. According to the latest Netscout Threat Intelligence Report, Distributed Denial-of-Service (DDoS) incidents in the Emirates tripled in the second half of 2025. While the sheer volume of attacks is concerning, the real story lies in the evolving nature of the threat: attacks are becoming significantly longer, more complex, and harder to shake.

By the Numbers: A Dramatic Escalation

The shift from the first half (H1) to the second half (H2) of 2025 reveals a stark jump in both frequency and endurance:

Metric H1 2025 H2 2025
Total Incidents 3,477 10,303
Average Duration 27 Minutes ~12 Hours
Max Attack Vectors 8 22

As Gaurav Mohan, VP Sales for EMEA Growth Regions at Netscout, noted, this shift from "sprints" to "marathons" places immense operational pressure on mitigation teams. When an attack lasts 12 hours instead of 30 minutes, the risk of total service collapse increases exponentially.

Critical Infrastructure Under Fire

While the UAE’s digital economy thrives on connectivity, that same connectivity is being used as a primary target. The telecommunications sector bore the brunt of the assault in H2 2025:

  • Wired Telecommunications: 6,368 incidents
  • Other Telecom Providers: 945 incidents
  • Computing & Cloud Infrastructure: 825 incidents

The danger here is the "knock-on effect." Because these sectors act as the backbone for government services, finance, and commerce, a successful strike against a single provider can paralyze thousands of dependent businesses and public services.

A Widening Target Base

Interestingly, the data suggests that hackers are no longer satisfied with hitting just "the big players." While H1 focused on core infrastructure, H2 saw the target list expand to include retail, publishing, and merchant wholesalers. This diversification suggests that threat actors are looking for softer targets within the broader economy to cause maximum social and economic friction.

The New Playbook for Defense

In light of these findings, traditional security "checklists" are no longer enough. Experts suggest three critical pivots for UAE organizations:

  • Continuous Monitoring: Early detection is no longer a luxury; it is the only way to prevent a 12-hour disruption.
  • Testing for Stamina: Disaster recovery plans must be stress-tested against sustained attacks.
  • Dependency Mapping: Organizations must understand their "digital neighbors." If your cloud provider or carrier is hit, you are hit.
#Cybersecurity #DDoS #UAE Tech #Netscout #Digital Infrastructure