MA-NETSCOUT-SYSTEMS
22.3.2022 11:02:06 CET | Business Wire | Press release
NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report . During the second half of 2021, cybercriminals launched approximately 4.4 million Distributed Denial of Service (DDoS) attacks, bringing the total number of DDoS attacks in 2021 to 9.75 million. These attacks represent a 3% decrease from the record number set during the height of the pandemic but continue at a pace that's 14% above pre-pandemic levels.
The report details how the second half of 2021 established high-powered botnet armies and rebalanced the scales between volumetric and direct-path (non-spoofed) attacks, creating more sophisticated operating procedures for attackers and adding new tactics, techniques, and methods to their arsenals.
“While it may be tempting to look at the decrease in overall attacks as threat actors scaling back their efforts, we saw significantly higher activity compared to pre-pandemic levels,” said Richard Hummel, threat intelligence lead, NETSCOUT. “The reality is that attackers are constantly innovating and adapting new techniques, including the use of server-class botnets, DDoS-for-Hire services, and increased used direct-path attacks that continually perpetuate the advancement of the threat landscape.”
Other key findings from the NETSCOUT 2H2021 Threat Intelligence Report include:
- DDoS Extortion and Ransomware Operations are on the rise. Three high-profile DDoS extortion campaigns simultaneously operating is a new high. Ransomware gangs including Avaddon, REvil, BlackCat, AvosLocker, and Suncrypt were observed using DDoS to extort victims. Because of their success, ransomware groups have DDoS extortion operators masquerading as affiliates like the recent REvil DDoS Extortion campaign.
- VOIP Services were Targets of DDoS Extortion. Worldwide DDoS extortion attack campaigns from the REvil copycat were waged against several VOIP services providers. One VOIP service provider reported $9M-$12M in revenue loss due to DDoS attacks.
- DDoS-for-Hire services made attacks easy to launch. NETSCOUT examined 19 DDoS-for-Hire services and their capabilities that eliminate the technical requirements and cost of launching massive DDoS attacks. When combined, they offer more than 200 different attack types.
- APAC attacks increased by 7% as other regions subsided . Amid ongoing geopolitical tensions in China, Hong Kong, and Taiwan, the Asia-Pacific region saw the most significant increase in attacks year over year compared to other regions.
- Server-class botnet armies arrived. Cybercriminals have not only increased the number of Internet-of-Things (IoT) botnets but have also conscripted high-powered servers and high-capacity network devices, as seen with the GitMirai, Meris, and Dvinis botnets.
- Direct-path attacks are gaining in popularity . Adversaries inundated organizations with TCP- and UDP-based floods, otherwise known as direct-path or non-spoofed attacks. Meanwhile, a decrease in some amplification attacks drove down the number of total attacks.
- Attackers targeted select industries . Those hardest hit include software publishers (606% increase), insurance agencies and brokers (257% increase), computer manufacturers (162% increase), and colleges, universities, and professional schools (102% increase)
- The fastest DDoS attack recorded a 107% year-over-year increase. Using DNS, DNS amplification, ICMP, TCP, ACK, TCP RST, and TCP SYN vectors, the multi-vector attack against a target in Russia recorded 453 Mpps.
NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data captured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with insights from NETSCOUT's ATLAS Security Engineering & Response Team.
The visibility and insights compiled from the global DDOS attack data, which is represented in the Threat Intelligence Report and can be seen in the Omnis Threat Horizon portal, fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security portfolio to detect and block threat activity for enterprises and service providers worldwide.
Visit our interactive website for more information on NETSCOUT's semi-annual Threat Intelligence Report. You can also find us on Facebook , LinkedIn , and Twitter for threat updates and the latest trends and insights.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Omnis® Cyber Intelligence delivers the fastest and most scalable network security solution available on the market. NETSCOUT nGenius® service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor® Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.
©2022 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20220322005111/en/
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Goku Technologies Chooses SS&C for Fund Services2.9.2026 03:00:00 CEST | Press release
SS&C Technologies Holdings, Inc. (Nasdaq: SSNC) today announced that Singapore Goku Technologies Pte. Ltd., an AI-driven quantitative investment manager, has chosen SS&C as its fund services provider. The firm, with offices in Shanghai and Singapore, employs systematic trading strategies to invest in equities across Asia, with USD4 billion in assets under management. SS&C GlobeOp will provide fund administration services for the Goku Technologies Master Fund. The fund operates a high-volume trading strategy with substantial daily trading activity. SS&C will support the fund through a comprehensive suite of services including fund accounting and investor services, helping Goku Technologies build a scalable operating model. “As our business has grown, so have our demands on our trading and operational framework,” said Ken Chung, CEO of Singapore Goku Technologies. “We are building an institutional quality operations infrastructure, so we needed a provider capable of supporting a high-vol
Boomi Delivers the Critical Infrastructure That Brings Control to Enterprise AI2.9.2026 03:00:00 CEST | Press release
Govern AI agents, optimize token spend, and mitigate security risk to operationalize AI at scale Boomi, the data activation company for AI, today announced major platform innovations designed to solve critical barriers to enterprise AI adoption. At the core of these updates is Boomi’s Agent Control Plane, AI-native infrastructure that securely connects AI agents to core business systems, provides governance over agent activity, and controls runaway AI costs. This critical infrastructure runs flexibly across public cloud, the customer’s own cloud (VPC), or on-premises, directly supporting data and digital sovereignty, and giving organizations greater operational control over their AI estate. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260901851538/en/ Boomi Delivers the Critical Infrastructure That Brings Control to Enterprise AI Key Takeaways Boomi’s Agent Control Plane provides the critical AI-native infrastructure that
Meraki Capital Launches Tessero Across Six European Markets Following Landmark Hays Acquisition1.9.2026 22:36:00 CEST | Press release
Meraki Capital has launched Tessero,a new European specialist recruitment group created from the six former Hays plc businesses it acquired earlier this summer. Launching simultaneously across Sweden, Denmark, Hungary, Romania, Luxembourg and Czechia, Tessero brings six established recruitment businesses together under one independent European brand, creating an international platform with experienced teams, existing clients and active candidate networks from day one. The launch follows one of the most significant transactions in Meraki Capital’s history and the completion of a major transition programme across all six countries within weeks of the acquisition. 130 employees will now operate under the Tessero brand, with established country leadership teams remaining in place and continuing to lead their respective markets. Gary Elden OBE, CEO of Meraki Capital and Director of Tessero, said: “Tessero launches with something that normally takes years to build: established businesses, ex
SBC Medical to Participate in Several Upcoming Investor Conferences in September 20261.9.2026 19:35:00 CEST | Press release
SBC Medical Group Holdings Incorporated (Nasdaq: SBC) (“The Company” or “SBC Medical”), a Medical Services Organization (MSO) providing management support across a wide range of healthcare fields, today announced its participation in several upcoming investor conferences in September 2026. SBC Medical will conduct presentations and one-on-one meetings with institutional investors. Below is a summary of the Company’s scheduled participation in upcoming investor conferences: H.C. Wainwright 28th Annual Global Investment Conference Date: September 14 2026 Format: In-person (NY) Registration: https://my.ct.events/register.aspx?meid=cff43623-9e9f-45d4-bbc3-ee19e9c372c1&rpid=a667ca45-171e-4306-98eb-c466e8b7e6c1 ArcStone Kingswood Growth Summit 2026 Date: September 16 2026 Format: In-person (Toronto) Registration:https://www.meetmax.com/sched/event_144037/investor_reg_new.html?attendee_role_id=ARCSTONE_ATTENDEE CLSA 33rd Investors’ Forum 2026 Date: September 21, 2026 Format: In-person (Hong K
Crimson Moon Available Now, Bringing Heavy-Metal Gothic Action to Solo and Co-op Players on PC, PlayStation 5, and Xbox Series X|S1.9.2026 19:00:00 CEST | Press release
ProbablyMonsters’ action-adventure RPG offers blood-soaked combat, monstrous showdowns, and deep replay value for $19.99 USD ProbablyMonsters, an independent video game company creating original AA games with AAA sensibilities, today launched Crimson Moon on PC via Steam and Epic Game Store, PlayStation 5, and Xbox Series X|S for $19.99 USD. A $29.99 USD Deluxe Edition is also available and includes an exclusive armor set, weapon cosmetic, and upcoming game expansion. Watch the official Crimson Moon launch trailer on YouTube to see the game’s gothic heavy-metal power fantasy, crafted for both solo and co-op players, in action. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260901064893/en/ Crimson Moon is a gothic high renaissance action-adventure RPG built around intense, replayable missions that blend brutal precision with deep character progression. Players take on the role of the Nephilim, powerful human-angel hybrids bo
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
