MA-NETSCOUT-SYSTEMS
22.3.2022 11:02:06 CET | Business Wire | Press release
NETSCOUT SYSTEMS, INC., (NASDAQ: NTCT) today announced findings from its bi-annual Threat Intelligence Report . During the second half of 2021, cybercriminals launched approximately 4.4 million Distributed Denial of Service (DDoS) attacks, bringing the total number of DDoS attacks in 2021 to 9.75 million. These attacks represent a 3% decrease from the record number set during the height of the pandemic but continue at a pace that's 14% above pre-pandemic levels.
The report details how the second half of 2021 established high-powered botnet armies and rebalanced the scales between volumetric and direct-path (non-spoofed) attacks, creating more sophisticated operating procedures for attackers and adding new tactics, techniques, and methods to their arsenals.
“While it may be tempting to look at the decrease in overall attacks as threat actors scaling back their efforts, we saw significantly higher activity compared to pre-pandemic levels,” said Richard Hummel, threat intelligence lead, NETSCOUT. “The reality is that attackers are constantly innovating and adapting new techniques, including the use of server-class botnets, DDoS-for-Hire services, and increased used direct-path attacks that continually perpetuate the advancement of the threat landscape.”
Other key findings from the NETSCOUT 2H2021 Threat Intelligence Report include:
- DDoS Extortion and Ransomware Operations are on the rise. Three high-profile DDoS extortion campaigns simultaneously operating is a new high. Ransomware gangs including Avaddon, REvil, BlackCat, AvosLocker, and Suncrypt were observed using DDoS to extort victims. Because of their success, ransomware groups have DDoS extortion operators masquerading as affiliates like the recent REvil DDoS Extortion campaign.
- VOIP Services were Targets of DDoS Extortion. Worldwide DDoS extortion attack campaigns from the REvil copycat were waged against several VOIP services providers. One VOIP service provider reported $9M-$12M in revenue loss due to DDoS attacks.
- DDoS-for-Hire services made attacks easy to launch. NETSCOUT examined 19 DDoS-for-Hire services and their capabilities that eliminate the technical requirements and cost of launching massive DDoS attacks. When combined, they offer more than 200 different attack types.
- APAC attacks increased by 7% as other regions subsided . Amid ongoing geopolitical tensions in China, Hong Kong, and Taiwan, the Asia-Pacific region saw the most significant increase in attacks year over year compared to other regions.
- Server-class botnet armies arrived. Cybercriminals have not only increased the number of Internet-of-Things (IoT) botnets but have also conscripted high-powered servers and high-capacity network devices, as seen with the GitMirai, Meris, and Dvinis botnets.
- Direct-path attacks are gaining in popularity . Adversaries inundated organizations with TCP- and UDP-based floods, otherwise known as direct-path or non-spoofed attacks. Meanwhile, a decrease in some amplification attacks drove down the number of total attacks.
- Attackers targeted select industries . Those hardest hit include software publishers (606% increase), insurance agencies and brokers (257% increase), computer manufacturers (162% increase), and colleges, universities, and professional schools (102% increase)
- The fastest DDoS attack recorded a 107% year-over-year increase. Using DNS, DNS amplification, ICMP, TCP, ACK, TCP RST, and TCP SYN vectors, the multi-vector attack against a target in Russia recorded 453 Mpps.
NETSCOUT's Threat Intelligence Report covers the latest trends and activities in the DDoS threat landscape. It covers data captured from NETSCOUT's Active Level Threat Analysis System (ATLAS™) coupled with insights from NETSCOUT's ATLAS Security Engineering & Response Team.
The visibility and insights compiled from the global DDOS attack data, which is represented in the Threat Intelligence Report and can be seen in the Omnis Threat Horizon portal, fuel the ATLAS Intelligence Feed used across NETSCOUT's Omnis security portfolio to detect and block threat activity for enterprises and service providers worldwide.
Visit our interactive website for more information on NETSCOUT's semi-annual Threat Intelligence Report. You can also find us on Facebook , LinkedIn , and Twitter for threat updates and the latest trends and insights.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) helps assure digital business services against security, availability, and performance disruptions. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility and insights customers need to accelerate and secure their digital transformation. Omnis® Cyber Intelligence delivers the fastest and most scalable network security solution available on the market. NETSCOUT nGenius® service assurance solutions provide real-time, contextual analysis of service, network, and application performance. And Arbor® Smart DDoS Protection by NETSCOUT products help protect against attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers or in the cloud, and how NETSCOUT's security and performance solutions can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT on Twitter, Facebook, or LinkedIn.
©2022 NETSCOUT SYSTEMS, INC. All rights reserved. NETSCOUT, the NETSCOUT logo, Guardians of the Connected World, Adaptive Service Intelligence, Arbor, ATLAS, Cyber Threat Horizon, InfiniStream, nGenius, nGeniusONE, and Omnis are registered trademarks or trademarks of NETSCOUT SYSTEMS, INC., and/or its subsidiaries and/or affiliates in the USA and/or other countries. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20220322005111/en/
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Lehman Brothers Treasury Considers Sale and Final Wind-Down3.8.2026 15:30:00 CEST | Press release
Lehman Brothers Treasury Co. B.V. in liquidation (“LBT”) today, through its U.S. counsel Herbert Smith Freehills Kramer (USA) LLP, announced that LBT is considering a final wind-down of its estate. In connection therewith, LBT has retained Seaport Loan Products LLC as its exclusive placement agent in connection with the potential sale of LBT’s principal remaining asset – a $19.6 billion Class 4A allowed claim against Lehman Brothers Holdings Inc. (the “LBHI Claim”). LBT expects the sale to occur, if at all, in August 2026. To the extent the LBHI Claim is sold, LBT expects to make a final distribution to the holders of its existing notes and thereafter facilitate the cancellation of those notes and the final wind down of its estate in September 2026. The foregoing is subject to further consents and authorizations and LBT retains sole discretion to abandon or otherwise discontinue any sale process at any time. Accordingly, there can be no assurances that the sale process will be conducte
ClickHouse Launches ClickHouse Labs With Andy Pavlo as VP of Database Research3.8.2026 15:30:00 CEST | Press release
Renowned database researcher will lead a new group dedicated to advancing foundational database technology and sharing its work openly with the broader community ClickHouse today announced the launch of ClickHouse Labs, a new research group led by Andy Pavlo, one of the database industry’s most prominent researchers. Dr. Pavlo joins ClickHouse as Vice President of Database Research and will build a team dedicated to advancing the state of the art in database systems. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260803890510/en/ Andy Pavlo, VP of Database Research, ClickHouse Pavlo is an award-winning database researcher and professor at Carnegie Mellon University’s Computer Science Department. He is known throughout the database community for his work on autonomous databases, transaction processing, and large-scale data analytics. At ClickHouse, he will bring that expertise to some of the most ambitious and consequential c
EuroTeleSites Strengthens Operations One Year into Sitetracker Partnership3.8.2026 15:00:00 CEST | Press release
EuroTeleSites, one of Central and Eastern Europe's leading independent tower companies, today announced the results of its first year in partnership with Sitetracker, the leading global Asset Lifecycle Management platform. One year into the deployment, EuroTeleSites reports meaningful progress in its digital transformation, with measurable improvements in operational efficiency, cross-market transparency, and project coordination across its six-country footprint. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260727009809/en/ EuroTeleSites Strengthens Operations One Year into Sitetracker Partnership Driving Efficiency in a Complex, High-Investment Environment EuroTeleSites invests approximately 25% of its revenue into capital expenditures in 2026, funding the construction and upgrade of tower infrastructure across Central and Eastern European markets. Managing this level of scale and complexity demands robust digital support
Visa to Acquire BioCatch3.8.2026 14:30:00 CEST | Press release
BioCatch’s behavioral and device intelligence expertise expected to help detect scams, account takeovers and digital fraud before they happen Visa (NYSE: V) today announced it has signed a definitive agreement to acquire BioCatch, a leading provider of behavioral-first, multi-signal fraud intelligence, from funds advised by Permira and other shareholders for $2.4 billion in cash. The acquisition of BioCatch complements Visa’s existing cyber, fraud, risk and security solutions and is expected to help clients better protect themselves and their customers from the growing threat of account takeovers, scams, money mules and application fraud. Since its inception, BioCatch has developed innovative AI and machine learning-based solutions that analyze thousands of application, behavioral, device, and network signals—such as keystrokes, touch gestures, and device handling—to detect fraud and distinguish legitimate users from fraudsters in real time. BioCatch protects 1.8 billion devices and 76
U.S. Bank Investment Services enhances investor and client onboarding experience for alternative investments3.8.2026 14:16:00 CEST | Press release
U.S. Bank Investment Services today announced it has gone live with a new client lifecycle management (CLM) platform, providing a comprehensive onboarding solution for alternative investment clients and the investors in their funds. The implementation is a key milestone in Investment Services’ multi-phased technology transformation strategy, aimed at modernizing processes, workflows and reporting across the private funds space. U.S. Bank leverages CLM provider Fenergo and its Fen-X platform. Fen-X automates many of the manual processes traditionally associated with underlying investors and direct client relationships and accelerates account setup while maintaining regulatory requirements. The enhanced onboarding experience provides investors and clients with more transparency throughout the process and enables integration with other solutions providers involved in the investor journey, such as screening and tax reporting. The investor experience has been further enhanced with an invest
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
