Business Wire

MA-NETSCOUT-SYSTEMS

21.9.2021 12:03:07 CEST | Business Wire | Press release

Share
Cybercriminal Attacks Accelerate Global Cybersecurity Crisis According to 1H2021 NETSCOUT Threat Intelligence Report

NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report that underscore the dramatic impact cyberattacks continue to have on private and public organizations and governments worldwide. In the first half of 2021, cybercriminals launched approximately 5.4 million Distributed Denial of Services (DDoS) attacks, increasing 11% over 1H2020 figures. Additionally, data projections from NETSCOUT's Active Level Threat Analysis System (ATLAS™) Security Engineering and Response Team (ASERT) point to 2021 as another record-setting year on track to surpass 11 million global DDoS attacks. ASERT expects this long tail of attacker innovation to last, fueling a growing cybersecurity crisis that will continue to impact public and private organizations.

In the wake of Colonial Pipeline, JBS, Harris Federation, Australian broadcaster Channel Nine, CNA Financial, and several other high-profile attacks, the impact of DDoS and other cybersecurity attacks has been felt worldwide. As a result, leading governments are introducing new programs and policies to defend against attacks, and policing organizations are initiating unprecedented collaborative efforts to address the crisis.

During 1H2021, cybercriminals weaponized and exploited seven newer reflection/amplification DDoS attack vectors putting organizations at greater risk. This attack vector explosion spurred an increase in multivector DDoS attacks with a record-setting 31 attack vectors deployed in a single attack against one organization.

Other key findings from the NETSCOUT 1H2021 Threat Intelligence Report include:

  • New adaptive DDoS attack techniques evade traditional defenses. By customizing their strategies, cybercriminals evolved their attack efforts to bypass cloud-based and on-premise static DDoS defenses to target commercial banks and credit card processors.
  • Connectivity supply chain increasingly under attack. Bad actors looking to cause the most collateral damage focused their efforts on vital internet components, including DNS servers, virtual private network (VPN) concentrators, services, and internet exchanges, disrupting essential gateways.
  • Cybercriminals add DDoS to their toolkit to launch triple extortion campaigns. Ransomware has become big business, with extortionists adding DDoS to their attack regimen to ratchet up the pressure on victims and add stress to security teams. Triple extortion combines file encryption, data theft, and DDoS attacks, increasing the possibility that cyber criminals receive payment.
  • The fastest DDoS attack recorded a 16.17% year-over-year increase. A Brazilian wireline broadband internet user launched the attack, which was likely related to online gaming. Using DNS reflection/amplification, TCP ACK flood, TCP RST flood, and TCP SYN/ACK reflection/amplification vectors, the sophisticated attack recorded 675 Mpps.
  • The largest DDoS attack, 1.5 Tbps, represented a year-over-year increase of 169%. ASERT data identified this attack against a German ISP, deploying a DNS reflection/amplification vector. This attack represents a dramatic increase in size over any attacks recorded in 1H2020.
  • Botnets contribute to major DDoS activity - Tracked botnet clusters and high-density attack-source zones worldwide showcased how malicious adversaries abused these botnets to participate in more than 2.8 million DDoS attacks. In addition, well-known IoT botnets Gafgyt and Mirai continue to pose a severe threat contributing to more than half of the total number of DDoS attacks.

"Cybercriminals are making front-page news launching an unprecedented number of DDoS attacks to take advantage of the pandemic's remote work shift by undermining vital components of the connectivity supply chain," stated Richard Hummel, threat intelligence lead, NETSCOUT. "Ransomware gangs added triple-extortion DDoS tactics to their repertoire. Simultaneously, the Fancy Lazarus DDoS extortion campaign kicked into high gear threatening organizations in multiple industries with a focus on ISPs and specifically their authoritative DNS servers."

NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data secured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with NETSCOUT's ATLAS Security Engineering & Response Team (ASERT) insights.

The visibility and analysis represented in the Threat Intelligence Report and Omnis® Threat Horizon fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security product portfolio to detect and block threat activity for enterprises and service providers worldwide.

For more information on NETSCOUT's semi-annual Threat Intelligence Report, please visit our interactive website . You can also find us on Facebook , LinkedIn, and Twitter for threat updates and the latest trends and insights.

About NETSCOUT

NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Our Omnis® cybersecurity advanced threat detection and response platform offers comprehensive network visibility, threat detection, highly contextual investigation, and automated mitigation at the network edge. NETSCOUT nGenius™ service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.

©2021 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.

Link:

ClickThru

Social Media:

https://www.facebook.com/NETSCOUTinc

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network28.9.2026 10:00:00 CEST | Press release

Certification provides a defined security baseline for the network supporting Horizon3’s EU data sovereignty site in Germany Horizon3, the AI-Native Proactive Security Company, today announced that it has earned Cyber Essentials Plus certification covering its NodeZero AWS EU network. The network supports Horizon3’s EU data sovereignty site in Germany. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928143792/en/ Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network Organizations use NodeZero® to test production environments and find weaknesses attackers can exploit. When customers and partners assess the platform itself, they also need to understand the security standards applied to its supporting infrastructure. The Cyber Essentials certificate identifies a defined portion of that infrastructure and the baseline against which it was assessed. Developed by the UK’s National Cyber Security Centre, Cybe

Thales Expands Collaboration with Google Cloud to Help Secure Agentic AI Workflows28.9.2026 09:03:00 CEST | Press release

Integration enables new protections for communications between AI agents, models, enterprise data, and tools to help control what agents can access, share, and do Thales AI Security Fabric mitigates risks, brings enhanced visibility and policy enforcement to AI-driven workflows on Google Cloud Thales today announced an expanded collaboration with Google Cloud to help enterprises address emerging security and governance challenges associated with agentic AI, bringing integrated protection, visibility, and policy enforcement to AI-driven workflows on Google Cloud. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928647188/en/ ©Thales The integration of Thales AI Security Fabric with Google Cloud Gemini Enterprise helps organizations apply security, governance, and visibility across interactions among users, agents, models, and tools in real time. “Enterprises are moving from AI assistants to AI agents that can autonomously ta

SPORVIGILANCE Targets Safer Medicines and Billion-Euro Savings for Global Pharma Facing EU IDMP Fines28.9.2026 08:13:00 CEST | Press release

British regulatory technology company SPORVIGILANCE is targeting one of global pharma’s major compliance challenges with a platform offering a faster route to IDMP and SPOR readiness, compliance and governance. As the European Medicines Agency advances structured medicinal product data, companies face pressure to keep regulatory data accurate, standardised and aligned with EMA requirements. SPORVIGILANCE replaces fragmented manual assessment with a regulatory intelligence layer built around IDMP, SPOR and Product Management Service (PMS) requirements. At its core is an IDMP Business Rule Validation Engine that assesses medicinal product data at scale and at field level, identifying missing, inconsistent and non-compliant data. SPORVIGILANCE is the only platform to translate IDMP business rules directly into automated validation logic, enabling companies to test data against the rules rather than rely on manual interpretation. Its PMS Alignment capability reconciles internal RIM data ag

Sofinnova Partners Closes Oversubscribed €82 Million Sofinnova MD Start IV Fund to Create the Next Generation of Medtech Companies28.9.2026 08:00:00 CEST | Press release

The new fund extends Sofinnova’s 20-year track record of company creation with capacity to launch six to eight new ventures across Europe and the US Sofinnova Partners ("Sofinnova"), a leading European life sciences venture capital firm based in Paris, London, and Milan, today announced the final close of Sofinnova MD Start IV at €82 million. The fund, which was oversubscribed, will help expand Sofinnova's medtech company-creation strategy across Europe and the US with greater capacity to launch new ventures and support them through key stages of development. With plans to launch six to eight new medtech companies over the next five years, Sofinnova MD Start IV will support ventures from inception through key clinical and operational milestones, providing founders with both capital and hands-on support. Sofinnova MD Start's approach combines clinical insight, entrepreneurial talent, and operational expertise to tackle significant unmet medical needs. The previous fund, Sofinnova MD Sta

Ant International’s Antom Upgrades Southeast Asia Leadership Structure to Drive Regional Synergy in the AI Era28.9.2026 07:18:00 CEST | Press release

Antom, a leading merchant payment and digitisation services provider under Ant International, today announced a series of key appointments for its operations in Southeast Asia to further strengthen the synergy among its regional brands and better serve regional merchants with streamlined full-stack AI-native solutions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260927431282/en/ Nabilah Alsagoff, co-founder and former chief operating officer of DOKU, Indonesia's leading payment fintech company, has been appointed as Head of Product, Antom SEA. In her new role, the payment veteran will oversee product development and innovation and drive a unified product roadmap for the overall SEA region. Chris Yeo, former chief executive officer (CEO) of DOKU, will take on the role as Head of Antom Philippines, and Country Head of 2C2P Philippines. With his long experience at DOKU, Grab and PayPal, Chris will also oversee the execution

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye