Business Wire

MA-NETSCOUT-SYSTEMS

21.9.2021 12:03:07 CEST | Business Wire | Press release

Share
Cybercriminal Attacks Accelerate Global Cybersecurity Crisis According to 1H2021 NETSCOUT Threat Intelligence Report

NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report that underscore the dramatic impact cyberattacks continue to have on private and public organizations and governments worldwide. In the first half of 2021, cybercriminals launched approximately 5.4 million Distributed Denial of Services (DDoS) attacks, increasing 11% over 1H2020 figures. Additionally, data projections from NETSCOUT's Active Level Threat Analysis System (ATLAS™) Security Engineering and Response Team (ASERT) point to 2021 as another record-setting year on track to surpass 11 million global DDoS attacks. ASERT expects this long tail of attacker innovation to last, fueling a growing cybersecurity crisis that will continue to impact public and private organizations.

In the wake of Colonial Pipeline, JBS, Harris Federation, Australian broadcaster Channel Nine, CNA Financial, and several other high-profile attacks, the impact of DDoS and other cybersecurity attacks has been felt worldwide. As a result, leading governments are introducing new programs and policies to defend against attacks, and policing organizations are initiating unprecedented collaborative efforts to address the crisis.

During 1H2021, cybercriminals weaponized and exploited seven newer reflection/amplification DDoS attack vectors putting organizations at greater risk. This attack vector explosion spurred an increase in multivector DDoS attacks with a record-setting 31 attack vectors deployed in a single attack against one organization.

Other key findings from the NETSCOUT 1H2021 Threat Intelligence Report include:

  • New adaptive DDoS attack techniques evade traditional defenses. By customizing their strategies, cybercriminals evolved their attack efforts to bypass cloud-based and on-premise static DDoS defenses to target commercial banks and credit card processors.
  • Connectivity supply chain increasingly under attack. Bad actors looking to cause the most collateral damage focused their efforts on vital internet components, including DNS servers, virtual private network (VPN) concentrators, services, and internet exchanges, disrupting essential gateways.
  • Cybercriminals add DDoS to their toolkit to launch triple extortion campaigns. Ransomware has become big business, with extortionists adding DDoS to their attack regimen to ratchet up the pressure on victims and add stress to security teams. Triple extortion combines file encryption, data theft, and DDoS attacks, increasing the possibility that cyber criminals receive payment.
  • The fastest DDoS attack recorded a 16.17% year-over-year increase. A Brazilian wireline broadband internet user launched the attack, which was likely related to online gaming. Using DNS reflection/amplification, TCP ACK flood, TCP RST flood, and TCP SYN/ACK reflection/amplification vectors, the sophisticated attack recorded 675 Mpps.
  • The largest DDoS attack, 1.5 Tbps, represented a year-over-year increase of 169%. ASERT data identified this attack against a German ISP, deploying a DNS reflection/amplification vector. This attack represents a dramatic increase in size over any attacks recorded in 1H2020.
  • Botnets contribute to major DDoS activity - Tracked botnet clusters and high-density attack-source zones worldwide showcased how malicious adversaries abused these botnets to participate in more than 2.8 million DDoS attacks. In addition, well-known IoT botnets Gafgyt and Mirai continue to pose a severe threat contributing to more than half of the total number of DDoS attacks.

"Cybercriminals are making front-page news launching an unprecedented number of DDoS attacks to take advantage of the pandemic's remote work shift by undermining vital components of the connectivity supply chain," stated Richard Hummel, threat intelligence lead, NETSCOUT. "Ransomware gangs added triple-extortion DDoS tactics to their repertoire. Simultaneously, the Fancy Lazarus DDoS extortion campaign kicked into high gear threatening organizations in multiple industries with a focus on ISPs and specifically their authoritative DNS servers."

NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data secured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with NETSCOUT's ATLAS Security Engineering & Response Team (ASERT) insights.

The visibility and analysis represented in the Threat Intelligence Report and Omnis® Threat Horizon fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security product portfolio to detect and block threat activity for enterprises and service providers worldwide.

For more information on NETSCOUT's semi-annual Threat Intelligence Report, please visit our interactive website . You can also find us on Facebook , LinkedIn, and Twitter for threat updates and the latest trends and insights.

About NETSCOUT

NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Our Omnis® cybersecurity advanced threat detection and response platform offers comprehensive network visibility, threat detection, highly contextual investigation, and automated mitigation at the network edge. NETSCOUT nGenius™ service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.

©2021 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.

Link:

ClickThru

Social Media:

https://www.facebook.com/NETSCOUTinc

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Mindbreeze InSpire Reduces Token Maxxing, Turning Runaway AI Costs Into Predictable Enterprise Value28.7.2026 15:03:00 CEST | Press release

By grounding generative AI in precise, governed enterprise knowledge, Mindbreeze InSpire cuts the wasted tokens that inflate AI budgets and erode answer quality. Mindbreeze, a leading global provider of AI-based knowledge management solutions, today announced that Mindbreeze InSpire reduces token maxxing, the costly overconsumption of large language model (LLM) tokens that is straining enterprise AI budgets. By retrieving only the most relevant, grounded content and passing it to LLMs with precision, Mindbreeze InSpire lowers the tokens required per answer while improving accuracy, giving enterprises a path to scalable AI with predictable economics. Token maxxing has become one of the most underestimated risks in enterprise AI. As organizations connect generative AI to their data, many default to injecting large volumes of undifferentiated context into every prompt, repeatedly, across thousands of queries. Industry analysis has warned that tokens are becoming the true unit of AI cost,

Uptime Institute 16th Annual 2026 Global Data Center Survey: Deployment of High Density Racks Rising Fast, Operators Face Continued Recruiting and Retention Pressures28.7.2026 15:02:00 CEST | Press release

Uptime Institute today released the findings of its 16th Annual Global Data Center Survey, the most comprehensive study of the digital infrastructure sector. The 2026 results reveal an industry navigating workforce constraints, escalating outage expenses, even as rising costs remain the top concern for management teams. Financial Pressure and Resource Constraints Intensify: While high costs continue to be a primary concern for data center leaders, the 2026 survey also highlights escalating concerns over capacity forecasting, power availability, and supply chain disruptions. Power efficiency gains remain gradual. The industry saw minor improvements in average Power Usage Effectiveness (PUE) levels this year. While newer facilities may boast highly efficient designs, overall global progress is slowed by legacy infrastructure. The AI and Density Reality Check: Despite market enthusiasm for Artificial Intelligence, expectations for AI in data center operations cooled slightly in 2026. Oper

Torq Unveils the SOC Brain: The AI SOC That Learns, Not Just Remembers28.7.2026 15:00:00 CEST | Press release

New Torq AI SOC Platform layer’s innovative capabilities learn from every security decision and historical incident, drawing conclusions from precedents and team judgments from day zero Torq, the established agentic security operations leader, today introduced Torq SOC Brain™, a new layer of the Torq AI SOC Platform that continuously learns from historical investigations, analyst decisions, and organization-specific security operations to create a unified, self-learning AI SOC. While most autonomous investigation systems claim to be self-learning, they are, in reality, memory systems—they simply retrieve past cases and pass them to a language model at decision time. Torq SOC Brain is fundamentally different. It reasons from precedent, adapts to how each SOC evaluates risk, and continuously refines its judgment with every completed investigation. The result is an AI SOC that grows more accurate over time—not a thin wrapper around a generic AI model. This press release features multimedi

AUTOBACS SEVEN Marks 10 Years of System Stability and Self-Funded Innovation with Rimini Street28.7.2026 15:00:00 CEST | Press release

Japan’s leading automotive aftermarket retailer uses Rimini Smart Path™ to accelerate innovation without disrupting its core SAP ECC and Oracle Database systems Rimini Street, Inc. (Nasdaq: RMNI), the Software Support and Agentic AI ERP Company™ and the leading third-party support provider for Oracle, SAP and VMware software, today announced that AUTOBACS SEVEN Co., Ltd. celebrates its 10-year partnership with Rimini Street, marking a decade of stable core operations and reinvestment in innovation. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260728266493/en/ AUTOBACS SEVEN Marks 10 Years of System Stability and Self-Funded Innovation with Rimini Street Since switching to Rimini Support™ for SAP ECC 6 in 2016, AUTOBACS SEVEN has expanded its partnership to include Oracle Database, helping the company stabilize mission-critical systems, reduce maintenance burden and free resources for innovation. “At AUTOBACS SEVEN, our lea

Abnormal AI Extends its Behavioral Security Platform to Identity and AI Security28.7.2026 15:00:00 CEST | Press release

Abnormal launches three new products: Identity Threat Protection, AI Governance, and Infiltration Prevention to secure the modern identity attack surface Abnormal AI, the AI-native behavior security company trusted by more than 25% of the Fortune 5001, today announced the expansion of its Behavioral Security Platform across the enterprise, introducing three new products: Identity Threat Protection, AI Governance, and Infiltration Prevention. Together, the launch extends the behavioral AI that already secures over 4,500 customers1 to the identities, AI systems and onboarding pipeline that attackers increasingly exploit. Additionally, customers can now activate products from the AI App Store, a new interface to turn on Abnormal products in a single click. For nearly a decade, Abnormal has protected organizations by understanding behavior, learning what normal looks like for every identity and detecting the deviations that signal anomalous activity or an attack. That behavioral foundation

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye