NEUSTAR
26.3.2020 09:02:06 CET | Business Wire | Press release
Neustar , Inc., a global information services and technology company and leader in identity resolution, announced that its Security Operations Center (SOC) saw a 168% increase in distributed denial-of-service (DDoS) attacks in Q4 2019, compared with Q4 2018, and a 180% increase overall in 2019 vs. 2018. According to Neustar’s latest cyber threats and trends report, released today, the company saw DDoS attacks across all size categories increase in 2019, with attacks sized 5 Gbps and below seeing the largest growth. These small-scale attacks made up more than three quarters of all attacks the company mitigated on behalf of its customers in 2019.
DDoS attacks taking varied forms
In 2019, the largest threat Neustar mitigated, at 587 gigabits per second (Gbps), was 31% larger than the largest attack of 2018, while the maximum attack intensity observed in 2019, 343 million packets per second (Mpps), was 252% higher than that of the most intense attack seen in 2018. However, despite these higher peaks, the average attack size (12 Gbps) and intensity (3 Mpps) remained consistent year over year. The longest single, uninterrupted attack experienced in 2019 lasted three days, 13 hours and eight minutes.
Though the number of attacks increased significantly across all size categories, small-scale attacks (5 Gbps and below) again saw the largest growth in 2019, continuing the trend from the previous year. The combination of DDoS-for-hire and botnet rental services has made DDoS attacks much easier to execute, but the fact that perpetrators seem to be in many cases choosing to engage in small-scale attacks suggests that their goal may often be something other than taking a site completely offline.
“Large, headline-making DDoS attacks do still take place, but many cybersecurity professionals believe that smaller attacks are being used simply to degrade site performance or as a smokescreen for other forms of cybercrime, such as data theft or network infiltration, which the perpetrator can execute more easily while the target’s security team is busy fighting a DDoS attack,” said Rodney Joffe, senior vice president, senior technologist and fellow at Neustar. “Furthermore, with the current move of the bulk of the workforce globally to a work from home model, we expect to see a significant increase in DDoS attacks against VPN infrastructure. This risk makes an ‘always on’ DDoS mitigation service even more critical.”
In addition to conventional DDoS attacks, which seek to exhaust bandwidth, in 2019 Neustar also observed an increase in network protocol or state exhaustion attacks, which target network infrastructure directly. Volumetric attacks continued to proliferate as well, with attackers using new DDoS vectors such as Apple Remote Management Services, Web Services Dynamic Discovery, Ubiquiti Discovery Protocol and the Constrained Application Protocol.
Said Joffe, “During the shift to teleworking at scale, we would not be surprised to see the VPN protocol ports added to these targeted attacks.”
Two- and three-vector attacks ‘just right’ for attackers
In 2019, approximately 85% of all attacks used two or more threat vectors. That number is comparable to the 2018 figure; however, the number of attacks involving two or three vectors rose from 55% to 70%, with correspondingly fewer simple single-vector attacks and complex four- and five-vector attacks, suggesting that attackers have settled into the Goldilocks zone for attacks.
Security professionals continue to view DDoS attacks as a growing threat. According to the most recent Neustar International Security Council (NISC) survey, when asked which vectors they perceived to be increasing threats during November and December 2019, senior-level cybersecurity decision-makers cited social engineering via email most frequently (59%), followed by DDoS (58%) and ransomware (56%).
Web attacks increasing
2019 saw web attacks on the rise as well. Most companies recognise the danger that slow-loading websites pose to their business and attempt to protect them with web application firewalls. In the most recent NISC survey, 98% of respondents agreed that a WAF was an essential component of their security infrastructure. However, as more and more enterprises use multiple cloud providers, often involving a mix of public and private clouds, the need for consistent security across applications and platforms is growing.
“Web attacks can be difficult to track because some variation in the performance of websites is to be expected, but they are increasingly critical for businesses to address. One survey found 45% of consumers are less likely to make a purchase when they experience a slow loading website, and 37% are less likely to return to a retailer if they experience slow loading pages,” added Joffe.
A vendor-neutral cloud WAF, coupled with DDoS protection, can eliminate a large portion of threats, allowing enterprise application experts to focus their attention on the more specialised attacks. Continuous updates from a reliable threat feed can also deliver information on bad IPs and botnet command and control (C&C) sites before they are able to damage the network.
A complimentary copy of the Neustar 2019: The Year in Review cyber threats and trends report is available here .
-ENDS-
About Neustar
Neustar is an information services and technology company and a leader in identity resolution providing the data and technology that enables trusted connections between companies and people at the moments that matter most. Neustar offers industry-leading solutions in Marketing, Risk, Communications, Security and Registry that responsibly connect data on people, devices and locations, continuously corroborated through billions of transactions. Neustar serves more than 8,000 clients worldwide, including 60 of the Fortune 100. Learn how your company can benefit from the power of trusted connections here: https://www.home.neustar
.
# # #
View source version on businesswire.com: https://www.businesswire.com/news/home/20200326005046/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Windrose and Autel Validate Real-World Megawatt Charging Under MCS Standard in the Netherlands17.3.2026 09:03:00 CET | Press release
As electric heavy-duty vehicles continue to expand across Europe, charging infrastructure is evolving toward megawatt-level capability. Windrose and Autel Europe recently announced the successful completion of a real-world Megawatt Charging System (MCS) charging session at the Mega Charging Hub of a prime customer of Revolt in Roosendaal, marking an operational validation of charging under the MCS standard in live site conditions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260313298350/en/ Windrose electric truck charging with Autel’s MCS-enabled megawatt charging system. The deployment features a modular megawatt configuration combining three MaxiCharger DS480 high-power charging cabinets connected in parallel to form a 1,440 kW system. The setup is paired with the MaxiCharger DT1500 MCS-enabled dispenser, capable of delivering up to 1.2 MW output through the MCS interface with a maximum current of 1,500 A, while also s
Aqara Enhances Smart Home Security Lineup with Camera Hub G350, and the Doorbell Camera G400 (Wired)17.3.2026 09:00:00 CET | Press release
Aqara offered a unified, comprehensive home security experience to users with the world’s first Matter-certified camera and the reliable wired camera Aqara, a global leader and pioneer in IoT, today announced the availability of the Camera Hub G350, the world’s first Matter-certified camera, and the Doorbell Camera G400 (Wired), expanding its next-generation smart home security lineup. Together, these new products deliver seamless interoperability, intelligent monitoring, and comprehensive home coverage for the modern smart home. Camera Hub G350: World’s First Matter-Certified Camera and Smart Home Controller The Aqara Camera Hub G350 marks an important milestone for Aqara as the world’s and the company’s first Matter-certified camera. Built to deliver future-ready interoperability, the G350 connects directly to Matter-enabled platforms* while offering live view, two-way audio, and alerts within the Matter-enabled ecosystem. Beyond serving as an indoor security camera, the device also
Yolanthe Cabau Honoured With Lifetime Achievement Award for Her Global Fight Against Child Sexual Exploitation17.3.2026 09:00:00 CET | Press release
The actress, entrepreneur and philanthropist was recognised during UN Commission on the Status of Women Week for nearly two decades of advocacy with her foundation, Free a Girl During the United Nations Commission on the Status of Women Week, actress, entrepreneur and philanthropist, Yolanthe Cabau, was awarded the Lifetime Achievement Award from the New York City Bar Association in recognition of her work combating the sexual exploitation of children. Held in New York, the awards evening emphasised the importance of safety within the justice system, recognising that protecting vulnerable children also requires safeguarding the frontline teams working to create change. As the founder of the anti-child sex trafficking NGO Free a Girl, the Lifetime Achievement Award recognises Cabau’s eighteen years of dedication to rescuing children from sexual exploitation worldwide and supporting their path to justice, recovery, and empowerment. Free a Girl is a women-led organisation working to comba
Mobileum Showcases “Signal to Value” at MWC Barcelona 202617.3.2026 09:00:00 CET | Press release
AI-driven capabilities across roaming, fraud and risk management, network assurance, and enterprise AI help operators turn network events into insight, action, and revenue Mobileum Inc. (“Mobileum”), a leading global provider of analytics and network solutions, highlighted its ”Signal to Value” vision at MWC Barcelona 2026, demonstrating how telecom operators can turn network events into insight, action, and revenue. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260317260292/en/ Mobileum team at MWC Barcelona 2026. At the event, Mobileum demonstrated how operators can leverage its Active Intelligence Platform to enhance roaming performance, strengthen fraud and risk defenses, and automate network assurance across increasingly complex global networks. “Operators generate massive volumes of network events every second, but the real value comes from turning those events into insights, action, and revenue,” said Bernardo Lucas,
SIAL Paris 2026 : the Event That Sheds Light on and Accelerates the Global Food Business17.3.2026 09:00:00 CET | Press release
SIAL Pariswill return to Paris Nord Villepinte from 17 to 21 October 2026. The 2026 edition is set to be the most ambitious in the show’s history, surpassing an already record-breaking 2024 event and further cementing its status as a global benchmark for the food industry. SIAL Paris once again positions itself as a powerful business accelerator, an unparalleled showcase for major innovations and a strategic observatory of the trends shaping the future of food worldwide. With 85% of exhibition space already booked, up to 8,000 exhibitors expected, 295,000 professionals and more than 280,000 m² of exhibition space spanning 10 key sectors, SIAL Paris 2026 confirms both its exceptional international reach and the strong commitment of companies across the entire food value chain. A STRONG COMMERCIAL DYNAMIC AND A HIGHLY INTERNATIONAL SHOW Seven months ahead of opening, SIAL Paris 2026 is already posting strong commercial indicators. More than 260,000 m² of exhibition space has been sold, r
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
