MA-NETSCOUT-SYSTEMS
21.9.2021 12:03:07 CEST | Business Wire | Press release
NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report that underscore the dramatic impact cyberattacks continue to have on private and public organizations and governments worldwide. In the first half of 2021, cybercriminals launched approximately 5.4 million Distributed Denial of Services (DDoS) attacks, increasing 11% over 1H2020 figures. Additionally, data projections from NETSCOUT's Active Level Threat Analysis System (ATLAS™) Security Engineering and Response Team (ASERT) point to 2021 as another record-setting year on track to surpass 11 million global DDoS attacks. ASERT expects this long tail of attacker innovation to last, fueling a growing cybersecurity crisis that will continue to impact public and private organizations.
In the wake of Colonial Pipeline, JBS, Harris Federation, Australian broadcaster Channel Nine, CNA Financial, and several other high-profile attacks, the impact of DDoS and other cybersecurity attacks has been felt worldwide. As a result, leading governments are introducing new programs and policies to defend against attacks, and policing organizations are initiating unprecedented collaborative efforts to address the crisis.
During 1H2021, cybercriminals weaponized and exploited seven newer reflection/amplification DDoS attack vectors putting organizations at greater risk. This attack vector explosion spurred an increase in multivector DDoS attacks with a record-setting 31 attack vectors deployed in a single attack against one organization.
Other key findings from the NETSCOUT 1H2021 Threat Intelligence Report include:
- New adaptive DDoS attack techniques evade traditional defenses. By customizing their strategies, cybercriminals evolved their attack efforts to bypass cloud-based and on-premise static DDoS defenses to target commercial banks and credit card processors.
- Connectivity supply chain increasingly under attack. Bad actors looking to cause the most collateral damage focused their efforts on vital internet components, including DNS servers, virtual private network (VPN) concentrators, services, and internet exchanges, disrupting essential gateways.
- Cybercriminals add DDoS to their toolkit to launch triple extortion campaigns. Ransomware has become big business, with extortionists adding DDoS to their attack regimen to ratchet up the pressure on victims and add stress to security teams. Triple extortion combines file encryption, data theft, and DDoS attacks, increasing the possibility that cyber criminals receive payment.
- The fastest DDoS attack recorded a 16.17% year-over-year increase. A Brazilian wireline broadband internet user launched the attack, which was likely related to online gaming. Using DNS reflection/amplification, TCP ACK flood, TCP RST flood, and TCP SYN/ACK reflection/amplification vectors, the sophisticated attack recorded 675 Mpps.
- The largest DDoS attack, 1.5 Tbps, represented a year-over-year increase of 169%. ASERT data identified this attack against a German ISP, deploying a DNS reflection/amplification vector. This attack represents a dramatic increase in size over any attacks recorded in 1H2020.
- Botnets contribute to major DDoS activity - Tracked botnet clusters and high-density attack-source zones worldwide showcased how malicious adversaries abused these botnets to participate in more than 2.8 million DDoS attacks. In addition, well-known IoT botnets Gafgyt and Mirai continue to pose a severe threat contributing to more than half of the total number of DDoS attacks.
"Cybercriminals are making front-page news launching an unprecedented number of DDoS attacks to take advantage of the pandemic's remote work shift by undermining vital components of the connectivity supply chain," stated Richard Hummel, threat intelligence lead, NETSCOUT. "Ransomware gangs added triple-extortion DDoS tactics to their repertoire. Simultaneously, the Fancy Lazarus DDoS extortion campaign kicked into high gear threatening organizations in multiple industries with a focus on ISPs and specifically their authoritative DNS servers."
NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data secured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with NETSCOUT's ATLAS Security Engineering & Response Team (ASERT) insights.
The visibility and analysis represented in the Threat Intelligence Report and Omnis® Threat Horizon fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security product portfolio to detect and block threat activity for enterprises and service providers worldwide.
For more information on NETSCOUT's semi-annual Threat Intelligence Report, please visit our interactive website . You can also find us on Facebook , LinkedIn, and Twitter for threat updates and the latest trends and insights.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Our Omnis® cybersecurity advanced threat detection and response platform offers comprehensive network visibility, threat detection, highly contextual investigation, and automated mitigation at the network edge. NETSCOUT nGenius™ service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.
©2021 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210921005395/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
The Empire State Building Presents First-Ever Children’s Birthday Party Package for Celebrations at the Iconic Observatory Experience23.2.2026 15:13:00 CET | Press release
Express Access, Party Favors, and Private Room with Decorations and Ghirardelli Ice Cream Sundaes Parents who have looked for the best birthday party idea for their children have had their wish fulfilled. Today, the Empire State Building (ESB) announced the debut of its first-ever ESB Birthday Party Package for kids at the international icon’s Observatory as part of year-long 95th anniversary celebrations. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260223161708/en/ The Empire State Building Presents First-Ever Children’s Birthday Party Package for Celebrations at the Iconic Observatory Experience “From Lego playtime to Percy Jackson readers, children love the Empire State Building and now parents can give an unmatched experience to their children and their friends,” said Anthony E. Malkin, chairman and CEO of Empire State Realty Trust. “This birthday party package tops them all with an escorted visit through our world-fa
Xsolla Co-Sponsors Gamescom Dev Leadership Summit in Lisbon, Bringing Together Gaming Industry Leaders to Shape the Future of Game Development23.2.2026 15:00:00 CET | Press release
Platform Supporting 1,500+ Game Developers Across 200+ Geographies to Host Networking Dinner and Co-Moderate Strategic Roundtable at Premier European Gaming Executive Summit Xsolla, a global video game commerce company that helps developers launch, grow, and monetize their games, today announced its co-sponsorship of the Gamescom Dev Leadership Summit Lisbon, taking place February 24-26 at SUD Lisboa in Portugal. The event brings together gaming industry executives, studio founders, and business leaders to explore opportunities and innovations shaping the future of game development. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260223253705/en/ Graphic: Xsolla As part of its sponsorship, Xsolla will host the summit's Wednesday evening networking dinner and co-moderate a strategic roundtable session focused on business models and sustainable growth in the gaming industry. "We're seeing incredible innovation from studios acro
CoolMPS™ 600: Accurate and Affordable Long MPS/NGS Reads on a Mid-Throughput Platform23.2.2026 15:00:00 CET | Press release
Swiss Rockets AG announces that its CoolMPS 600 mid-throughput sequencer with advanced chemistry and novel MPS/NGS read length will become available in Q2 2026. Enabled by its exclusive license of CoolMPS technology, Swiss Rockets AG is developing its first sequencer, CoolMPS 600, through contract R&D with Complete Genomics since August 2025. The platform is utilizing the company’s proprietary antibody-based CoolMPS™ chemistry combined with DNBSEQ™, a real PCR-free DNA nanoarray technology. Separately, Swiss Rockets AG announced that it has entered into a definitive agreement to acquire 100% ownership of Complete Genomics. CoolMPS 600 enables cost-effective extended single-end sequencing to 600 bases (SE600) while maintaining high base accuracy. The system is designed to support advanced whole-genome sequencing (WGS) with improved mapping accuracy across complex genomic regions, including better detection of structural variants. It also enables full length transcriptomes and more infor
Angelini Pharma and Quiver Bioscience Announce Strategic Research Collaboration and Licensing Agreement to Discover and Advance Novel Therapeutics for Genetic Epilepsies23.2.2026 14:08:00 CET | Press release
Angelini Pharma secures exclusive global license rights to future identified drug targets Quiver receives undisclosed advance payment and is eligible for future milestone-dependent payments and royalties Collaboration further expands Angelini Pharma’s focus on brain health, building on its deep therapeutic expertise and drug development experience Angelini Pharma, part of the privately owned Angelini Industries, and Quiver Bioscience (“Quiver”), a discovery technology and therapeutics company advancing programs for the treatment of central nervous system (CNS) disorders, announced today that they have entered into a collaboration and licensing agreement to advance novel therapeutics for genetic epilepsies. The collaboration brings together Quiver’s unique drug discovery capabilities, data assets, and AI models with Angelini Pharma’s established expertise in brain health and epilepsy drug development. This press release features multimedia. View the full release here: https://www.busine
Armis Achieves U.S. Department of Defense Impact Level 5 Authorization23.2.2026 14:00:00 CET | Press release
DoD customers can now leverage Armis Centrix™ with enhanced security controls and connectivity Armis, the cyber exposure management & security company, today announced that it has achieved authorization from the U.S. DoD’s Defense Information Systems Agency (DISA) to operate at an Impact Level 5 (IL5). This means that Armis has met strict requirements to manage and secure the DoD’s critical infrastructure, including Controlled Unclassified Information (CUI) systems. “We are committed to helping Federal agencies like the Department of Defense address their toughest cybersecurity challenges,” said Alex Mosher, President and CRO at Armis. “Achieving DISA IL5 authorization is an important milestone for Armis as we continue to support DoD customers in safeguarding critical systems, sensitive data and national security infrastructure from evolving cyber threats.” Armis empowers Federal agencies to build and optimize comprehensive cybersecurity programs with Armis Centrix™, the FedRAMP and DI
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
