MA-NETSCOUT-SYSTEMS
NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report that underscore the dramatic impact cyberattacks continue to have on private and public organizations and governments worldwide. In the first half of 2021, cybercriminals launched approximately 5.4 million Distributed Denial of Services (DDoS) attacks, increasing 11% over 1H2020 figures. Additionally, data projections from NETSCOUT's Active Level Threat Analysis System (ATLAS™) Security Engineering and Response Team (ASERT) point to 2021 as another record-setting year on track to surpass 11 million global DDoS attacks. ASERT expects this long tail of attacker innovation to last, fueling a growing cybersecurity crisis that will continue to impact public and private organizations.
In the wake of Colonial Pipeline, JBS, Harris Federation, Australian broadcaster Channel Nine, CNA Financial, and several other high-profile attacks, the impact of DDoS and other cybersecurity attacks has been felt worldwide. As a result, leading governments are introducing new programs and policies to defend against attacks, and policing organizations are initiating unprecedented collaborative efforts to address the crisis.
During 1H2021, cybercriminals weaponized and exploited seven newer reflection/amplification DDoS attack vectors putting organizations at greater risk. This attack vector explosion spurred an increase in multivector DDoS attacks with a record-setting 31 attack vectors deployed in a single attack against one organization.
Other key findings from the NETSCOUT 1H2021 Threat Intelligence Report include:
- New adaptive DDoS attack techniques evade traditional defenses. By customizing their strategies, cybercriminals evolved their attack efforts to bypass cloud-based and on-premise static DDoS defenses to target commercial banks and credit card processors.
- Connectivity supply chain increasingly under attack. Bad actors looking to cause the most collateral damage focused their efforts on vital internet components, including DNS servers, virtual private network (VPN) concentrators, services, and internet exchanges, disrupting essential gateways.
- Cybercriminals add DDoS to their toolkit to launch triple extortion campaigns. Ransomware has become big business, with extortionists adding DDoS to their attack regimen to ratchet up the pressure on victims and add stress to security teams. Triple extortion combines file encryption, data theft, and DDoS attacks, increasing the possibility that cyber criminals receive payment.
- The fastest DDoS attack recorded a 16.17% year-over-year increase. A Brazilian wireline broadband internet user launched the attack, which was likely related to online gaming. Using DNS reflection/amplification, TCP ACK flood, TCP RST flood, and TCP SYN/ACK reflection/amplification vectors, the sophisticated attack recorded 675 Mpps.
- The largest DDoS attack, 1.5 Tbps, represented a year-over-year increase of 169%. ASERT data identified this attack against a German ISP, deploying a DNS reflection/amplification vector. This attack represents a dramatic increase in size over any attacks recorded in 1H2020.
- Botnets contribute to major DDoS activity - Tracked botnet clusters and high-density attack-source zones worldwide showcased how malicious adversaries abused these botnets to participate in more than 2.8 million DDoS attacks. In addition, well-known IoT botnets Gafgyt and Mirai continue to pose a severe threat contributing to more than half of the total number of DDoS attacks.
"Cybercriminals are making front-page news launching an unprecedented number of DDoS attacks to take advantage of the pandemic's remote work shift by undermining vital components of the connectivity supply chain," stated Richard Hummel, threat intelligence lead, NETSCOUT. "Ransomware gangs added triple-extortion DDoS tactics to their repertoire. Simultaneously, the Fancy Lazarus DDoS extortion campaign kicked into high gear threatening organizations in multiple industries with a focus on ISPs and specifically their authoritative DNS servers."
NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data secured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with NETSCOUT's ATLAS Security Engineering & Response Team (ASERT) insights.
The visibility and analysis represented in the Threat Intelligence Report and Omnis® Threat Horizon fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security product portfolio to detect and block threat activity for enterprises and service providers worldwide.
For more information on NETSCOUT's semi-annual Threat Intelligence Report, please visit our interactive website . You can also find us on Facebook , LinkedIn, and Twitter for threat updates and the latest trends and insights.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Our Omnis® cybersecurity advanced threat detection and response platform offers comprehensive network visibility, threat detection, highly contextual investigation, and automated mitigation at the network edge. NETSCOUT nGenius™ service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.
©2021 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210921005395/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Thales Launches AI Security Fabric, Providing AI Runtime Security for Agentic AI and LLM-Powered Applications11.12.2025 09:00:00 CET | Press release
Thales launches its new AI Security Fabric, delivering the first runtime security capabilities designed to protect Agentic AI, LLM-powered applications, enterprise data, and identities.New capabilities address emerging AI-specific threats—including prompt injection, data leakage, model manipulation, and insecure RAG pipelines—helping organizations innovate safely while maintaining compliance.With upcoming 2026 enhancements, Thales aims to provide a comprehensive security layer for AI ecosystems, enabling enterprises to confidently scale AI adoption across cloud and on-premises environments. AI is one of the fastest-growing technologies in the history of modern business, with the ability to revolutionize industries, optimize operations, and drive innovation, but it is also introducing security gaps, risks, and vulnerabilities. According to McKinsey, 78% of organizations are using AI in at least one business function, up from 55% two years ago. As a result, 73% of them are investing in A
Interactive Brokers Adds Access to Brazil’s B3 Exchange11.12.2025 09:00:00 CET | Press release
Interactive Brokers (Nasdaq: IBKR), an automated global electronic broker, today announced that eligible clients outside of Brazil can now trade Brazilian equities through B3, the Brazil Stock Exchange. This expansion gives investors more ways to access emerging market opportunities across Latin America alongside global stocks, options, futures, currencies, bonds, funds, and more through a single unified platform. The B3 Exchange is one of the most active and liquid markets in the region. With this addition, investors will have direct access to trade Brazilian equities, plus over 160 markets worldwide using Interactive Brokers’ powerful trading platforms and tools. “Global investors need seamless access to diverse markets to stay competitive,” said Milan Galik, Chief Executive Officer of Interactive Brokers. “By adding Brazil’s B3 Exchange, we’re giving our clients efficient, low-cost access to one of the world’s most dynamic emerging economies through our unified global platform.” Int
Kyowa Kirin Announces Proposed Appointment of Abdul Mullick to President and Chief Executive Officer, While Former CEO Masashi Miyamoto to Remain Chairman11.12.2025 08:30:00 CET | Press release
Leadership Changes to Take Effect Following Conclusion of Ordinary General Meeting of Shareholders in March 2026Announcement Follows Year of Dual CEO / COO Model and Returns Company to Single Leader Structure Kyowa Kirin Co., Ltd. (TSE:4151, Kyowa Kirin), a Japan-based global specialty pharmaceutical company, today announced the Board of Directors’ decision to appoint Abdul Mullick, Ph.D., currently President and Chief Operating Officer (COO), to the role of President and Chief Executive Officer (CEO). The appointment will become effective March 2026 following the conclusion of the Ordinary General Meeting of Shareholders. As Mullick takes on the role of President and CEO for Kyowa Kirin, current CEO Masashi Miyamoto, Ph.D., remains Chairman. In March 2025, shareholders approved a dual CEO / COO model, with Mullick appointed to the newly created role of Chief Operating Officer, partnering with Miyamoto to lead the global organisation. The model provided a transition period for Mullick
Galderma Announces First Patient Enrollment in Study to Assess Nemolizumab in Adults With Chronic Pruritus of Unknown Origin11.12.2025 07:00:00 CET | Press release
Chronic Pruritus of Unknown Origin (CPUO) is characterized by a persistent, chronic itch with an unknown cause and is associated with very high burden of disease due to severe itch, sleep deprivation and mental distress1 Galderma’s phase II study builds on emerging research that reinforces the role of IL-31 – a neuroimmune cytokine that is involved in driving itch – in CPUO1 Nemolizumab is a monoclonal antibody that specifically targets the IL-31 receptor alpha, inhibiting the signaling of IL-312 It is approved by multiple regulatory authorities for the treatment of moderate-to-severe atopic dermatitis and prurigo nodularis – conditions in which IL-31 plays a key role in driving itch, inflammation, epidermal dysregulation, and, in prurigo nodularis, fibrosis2-6 Galderma (SIX: GALD), the pure-play dermatology category leader, today announced the first patient enrollment for its phase II study investigating the efficacy and safety of nemolizumab in treating patients living with Chronic P
Ant International and HSBC Test New Cross-Border Payments Solution Using Tokenised Deposits on Swift’s Network and Powered by ISO 2002211.12.2025 04:00:00 CET | Press release
ISO 20022-enabled solution allows blockchain interoperability on Swift’s network, using Ant International’s technology and HSBC’s Tokenised Deposit Service Integration with Swift’s network extends AML and anti-fraud capabilities to tokenised deposits transactions Proof of concept (POC) marks a step towards enabling seamless money movement across borders Ant International, HSBC and Swift today have completed a successful Proof of Concept (POC) for the cross-border transfer of tokenised deposits using ISO 20022 standards. The initiative leverages Swift’s global messaging network and HSBC’s recently launched Tokenised Deposit Service, combined with Ant International’s blockchain technology. The POC marks a key milestone in Ant International, HSBC, and Swift’s efforts to help businesses unlock the full benefits of tokenisation for enhanced liquidity, programmable finance, and 24/7 real-time settlement. As part of this initiative, Ant International and HSBC successfully integrated Ant Inter
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
