MA-NETSCOUT-SYSTEMS
21.9.2021 12:03:07 CEST | Business Wire | Press release
NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report that underscore the dramatic impact cyberattacks continue to have on private and public organizations and governments worldwide. In the first half of 2021, cybercriminals launched approximately 5.4 million Distributed Denial of Services (DDoS) attacks, increasing 11% over 1H2020 figures. Additionally, data projections from NETSCOUT's Active Level Threat Analysis System (ATLAS™) Security Engineering and Response Team (ASERT) point to 2021 as another record-setting year on track to surpass 11 million global DDoS attacks. ASERT expects this long tail of attacker innovation to last, fueling a growing cybersecurity crisis that will continue to impact public and private organizations.
In the wake of Colonial Pipeline, JBS, Harris Federation, Australian broadcaster Channel Nine, CNA Financial, and several other high-profile attacks, the impact of DDoS and other cybersecurity attacks has been felt worldwide. As a result, leading governments are introducing new programs and policies to defend against attacks, and policing organizations are initiating unprecedented collaborative efforts to address the crisis.
During 1H2021, cybercriminals weaponized and exploited seven newer reflection/amplification DDoS attack vectors putting organizations at greater risk. This attack vector explosion spurred an increase in multivector DDoS attacks with a record-setting 31 attack vectors deployed in a single attack against one organization.
Other key findings from the NETSCOUT 1H2021 Threat Intelligence Report include:
- New adaptive DDoS attack techniques evade traditional defenses. By customizing their strategies, cybercriminals evolved their attack efforts to bypass cloud-based and on-premise static DDoS defenses to target commercial banks and credit card processors.
- Connectivity supply chain increasingly under attack. Bad actors looking to cause the most collateral damage focused their efforts on vital internet components, including DNS servers, virtual private network (VPN) concentrators, services, and internet exchanges, disrupting essential gateways.
- Cybercriminals add DDoS to their toolkit to launch triple extortion campaigns. Ransomware has become big business, with extortionists adding DDoS to their attack regimen to ratchet up the pressure on victims and add stress to security teams. Triple extortion combines file encryption, data theft, and DDoS attacks, increasing the possibility that cyber criminals receive payment.
- The fastest DDoS attack recorded a 16.17% year-over-year increase. A Brazilian wireline broadband internet user launched the attack, which was likely related to online gaming. Using DNS reflection/amplification, TCP ACK flood, TCP RST flood, and TCP SYN/ACK reflection/amplification vectors, the sophisticated attack recorded 675 Mpps.
- The largest DDoS attack, 1.5 Tbps, represented a year-over-year increase of 169%. ASERT data identified this attack against a German ISP, deploying a DNS reflection/amplification vector. This attack represents a dramatic increase in size over any attacks recorded in 1H2020.
- Botnets contribute to major DDoS activity - Tracked botnet clusters and high-density attack-source zones worldwide showcased how malicious adversaries abused these botnets to participate in more than 2.8 million DDoS attacks. In addition, well-known IoT botnets Gafgyt and Mirai continue to pose a severe threat contributing to more than half of the total number of DDoS attacks.
"Cybercriminals are making front-page news launching an unprecedented number of DDoS attacks to take advantage of the pandemic's remote work shift by undermining vital components of the connectivity supply chain," stated Richard Hummel, threat intelligence lead, NETSCOUT. "Ransomware gangs added triple-extortion DDoS tactics to their repertoire. Simultaneously, the Fancy Lazarus DDoS extortion campaign kicked into high gear threatening organizations in multiple industries with a focus on ISPs and specifically their authoritative DNS servers."
NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data secured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with NETSCOUT's ATLAS Security Engineering & Response Team (ASERT) insights.
The visibility and analysis represented in the Threat Intelligence Report and Omnis® Threat Horizon fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security product portfolio to detect and block threat activity for enterprises and service providers worldwide.
For more information on NETSCOUT's semi-annual Threat Intelligence Report, please visit our interactive website . You can also find us on Facebook , LinkedIn, and Twitter for threat updates and the latest trends and insights.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Our Omnis® cybersecurity advanced threat detection and response platform offers comprehensive network visibility, threat detection, highly contextual investigation, and automated mitigation at the network edge. NETSCOUT nGenius™ service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.
©2021 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210921005395/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Onego Bio Strengthens Board with Appointment of Dr. Antti Vasara4.2.2026 16:00:00 CET | Press release
Onego Bio, the food ingredient company producing non-animal egg protein through precision fermentation, today announced that Dr. Antti Vasara has joined its board of directors. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260204881159/en/ Dr. Antti Vasara Dr. Vasara brings more than 25 years of global experience in science, technology, and commercial strategy. Most recently, he served as President and CEO of VTT Technical Research Centre of Finland, where he led one of Europe’s foremost deep tech research organizations. His distinguished career spans senior leadership roles in industry and innovation policy—including impactful work with Nokia and strategic contributions to European research and development initiatives. “Antti is one of the most respected leaders in science and innovation,” said Maija Itkonen, CEO of Onego Bio. “His deep understanding of technology commercialization and ecosystem level strategy will be inva
Energy Vault announces the Award of 100 MW / 870 MWh Long-Term Energy Service Agreement to its Development Partner in Australia4.2.2026 15:09:00 CET | Press release
Energy Vault’s development partner in Australia, Bridge Energy, has secured a 14-year Long-Term Energy Service Agreement (LTESA) for the EBOR Battery Energy Storage System (BESS) project (100 MW / 870 MWh), under the NSW Electricity Infrastructure RoadmapEnergy Vault holds the exclusive option to acquire and construct the A$310 million project having supported Bridge through early stage developmentThe project will feature Energy Vault’s proprietary B-VAULT™ technology and Vault-OS™ Energy Management System software to provide essential grid firming capacityEnergy Vault acquired the Stoney Creek 125 MW / 1,000 MWh project in New South Wales in 2025, which also holds an LTESA, as Energy Vault rapidly expands its Australian footprint Energy Vault Holdings, Inc. (NYSE: NRGV) (“Energy Vault”), a leader in sustainable, grid-scale energy storage solutions, and Bridge Energy Pty Ltd (“Bridge Energy”), an Australian developer bridging the gap between fossil fuels and renewable energy, today ann
Ground Investigation for Civil Infrastructure Gets More Robust With Integration of Lab and Field Geotechnical Data4.2.2026 15:00:00 CET | Press release
Major update to leading geotechnical data management solution OpenGround, enables organisations to digitise geotechnical lab testing, enhancing efficiency and collaboration across engineering teams Seequent, The Bentley Subsurface Company, has streamlined laboratory testing in OpenGround, the leading cloud-connected geotechnical data management solution. The new OpenGround Labs capability enables seamless transfer of soil and rock sample data from field collection to laboratory testing and reporting, with results delivered directly to engineers. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260204539856/en/ Geotechnical labs can generate Atterberg limits test certificates from raw lab test data in OpenGround. The advancement enables an end-to-end digital engineering-to-lab workflow, enhancing collaboration and improving efficiency between ground investigation and laboratory testing teams. “Trusted Lab testing data is vital
Torq Lands Virgin Atlantic CISO John White to Lead Enterprise Shift to Agentic AI4.2.2026 15:00:00 CET | Press release
After Transforming Virgin Atlantic’s Cyber Defenses From Legacy Systems to the Torq AI SOC Platform, White Now Helps Global CISOs Navigate the Transition to Agentic Security Operations Torq, the established agentic security operations leader, today announced former Virgin Atlantic CISO John White has joined Torq as Field CISO. Following Torq’s $140M Series D, White shifts from the customer side to the Torq leadership team, propelling global enterprise CISOs to modernize their strategies and adopt true Agentic AI. White is a highly respected security executive with more than 20 years of leadership experience. Prior to Virgin Atlantic, he built and transformed security functions for global organizations including ASOS, Liberty Global, AEG Europe, and KPMG, spanning retail, telecommunications, energy, and live entertainment. At Virgin Atlantic, White did not just oversee security, he reinvented it. Leading a multi-year transformation across airline, cargo, and vacation businesses, White d
Boomi’s Market Momentum Accelerates as Enterprises Standardize on Its AI Activation Platform4.2.2026 15:00:00 CET | Press release
Integration and automation leader achieves 50% customer growth in just over three yearsCompany now serves 30,000+ customers worldwide, including more than a quarter of the Fortune 500Boomi powers enterprise-scale AI with 75,000+ agents running in production Boomi™, the leader in AI-driven automation, today announced that the company’s momentum in enterprise integration and agentic AI has reached a defining moment, driven by unmatched scale, independent analyst validation, proven customer outcomes, and ecosystem growth. With more than 30,000 customers worldwide — including over a quarter of the Fortune 500 — Boomi’s continued growth reflects the trust the world’s largest enterprises place in its platform.Today, customers rely on Boomi’s unique runtime architecture for mission-critical operations — including over 75,000 AI agents in production — executing billions of dollars in transactions with enterprise-grade reliability and resilience. This press release features multimedia. View the
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
