Business Wire

NEUSTAR

16.9.2020 09:32:11 CEST | Business Wire | Press release

Share
DDoS Attacks Increase by 151% in First Half Of 2020

Neustar, Inc. , a global information services and technology company and leader in identity resolution, today released its latest cyberthreats and trends report which identifies significant shifts in distributed denial-of-service (DDoS) attack patterns in the first half of 2020. Neustar’s Security Operations Centre (SOC) saw a 151% increase in the number of DDoS attacks compared to the same period in 2019. These included the largest and longest attacks that Neustar has ever mitigated at 1.17 Terabits-per-second (Tbps) and 5 days and 18 hours respectively. These figures are representative of the growing number, volume and intensity of network-type cyberattacks as organisations shifted to remote operations and workers’ reliance on the internet increased.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20200916005046/en/

Neustar’s role in providing navigation for internet requests (via its global UltraDNS network) and in detecting and mitigating threats (through its UltraDDoS Protect service) has given the company a front-row seat from which to observe macro cyberattack trends, as detailed in its CyberThreats and Trends Report: Jan-Jun 2020.

Largest and smallest DDoS attacks becoming increasingly intense and sophisticated

Large DDoS attacks are bigger, more intense, and happening in greater numbers than ever before. There has been a noticeable spike in large attacks across the industry, most notably the 2.3 Tbps attack targeting an Amazon Web Services client in February – the largest volumetric DDoS attack on record.

Neustar saw the total number of attacks increase by over two and a half times during January through June of 2020 compared to the same period in 2019. The increase was felt across all size categories, with the biggest growth happening at opposite ends of the scale – the number of attacks sized 100 Gbps and above grew a whopping 275% and the number of very small attacks, sized 5 Gbps and below, increased by more than 200%. Overall, small attacks sized 5 Gbps and below represented 70% of all attacks mitigated by Neustar between January and June of 2020.

“While large volumetric attacks capture attention and headlines, bad actors increasingly recognise the value of striking at low enough volume to bypass the traffic thresholds that would trigger mitigation to degrade performance or precision target vulnerable infrastructure like a VPN,” said Michael Kaczmarek, Neustar Vice President of Security Products. “These shifts put every organisation with an internet presence at risk of a DDoS attack – a threat that is particularly critical with global workforces reliant on VPNs for remote login. VPN servers are often left vulnerable, making it simple for cybercriminals to take an entire workforce offline with a targeted DDoS attack."

The rise in smaller DDoS attacks has been matched by increases in attack sophistication and intensity. 52% of threats mitigated by Neustar leveraged three vectors or more, with the number of attacks featuring a single vector essentially nonexistent. Neustar also tracked new amplification methods and attacks of higher intensity targeted at critical pieces of web infrastructure. The previous high-water mark of 500 millions-of-packets-per-second (Mpps) was topped this year, with an attack of over 800 Mpps recorded.

“The dependency and growth in online communications since COVID-19 has fundamentally changed what organisations must do to succeed,” said Brian McCann, President, Neustar Security Solutions. “There is no one-size-fits-all solution for security, but having a reliable cloud service that ensures availability and security for all services and users has proven to be a critical difference between barely surviving and thriving in this rapidly changing environment.”

Ongoing impact of COVID-19 on cyberthreats and industry web traffic

The precipitous rise in DDoS attacks mirrors the growth in internet traffic seen during the pandemic. Internet use is up between 50% and 70% and streaming media rose more than 12% in the first quarter of 2020 . This has meant that attackers of all types, whether serious cybercriminals or bored teenagers stuck at home, have had more screen time to be disruptive.

In a study of one of the largest cybercrime sites by Cambridge University’s Cybercrime Centre , they found that the number of attacks enacted by the website went up sharply at the start of the pandemic and associated lockdown. They also found that instead of existing cybercriminals staging more attacks, it was new attackers driving the increase in DDoS attacks.

The corresponding attacks, like internet traffic, have not been evenly spread across all websites. It’s well known that ecommerce and gaming websites have received a lot of negative attention from hackers, but there are other industries that have been hit hard by cybercriminals over the last six months. Healthcare organisations contain sensitive patient information and a growing number of IoT devices that are easily exploited. Combined with the additional pressure of the pandemic, hospitals have become some of the most desirable targets for cybercriminals. Industries that have seen a lot of growth during the pandemic, like online gambling, have also been ripe for cyberthreats. Most notably, online video has seen an incredible rise in both usage and DDoS attacks. Omdia has reported an additional 200 billion hours of Netflix viewing or Zoom video calls over initial 2020 forecasts. Where traffic rises, so too do attacks; Neustar attack mitigations for this vertical increased by 461% over the last six months.

“While 2020 has brought radical changes in behaviour to consumers and criminals alike, it is naïve to assume that actions of either audience will revert completely to pre-pandemic norms after this crisis passes,” added Kaczmarek. “Mitigating these increasingly sophisticated DDoS attacks will continue to be a necessary part of doing business online. At a time when many organisations could do with less worry, fully managed services can take the pressure off and ensure critical digital assets are safe and secure.”

The report highlights several emerging attacker tactics seen across the industry, including an increase in burst and pulse DDoS attacks, broadening abuse of built-in network protocols such as ARMS, WS-DD, CoAP and Jenkins to launch DDoS amplification attacks that can be carried out with limited resources and cause significant disruptions, NXNS attacks targeting DNS servers, RangeAmp attacks targeting Content Delivery Networks (CDNs), and a resurgence of Marai-like malware capable of building large botnets through the exploitation of poorly secured IoT devices.

A complimentary copy of Neustar’s CyberThreats and Trends Report 1H 2020 is available here .

-ENDS-

About Neustar

Neustar is an information services and technology company and a leader in identity resolution providing the data and technology that enables trusted connections between companies and people at the moments that matter most. Neustar offers industry-leading solutions in Marketing, Risk, Communications and Security that responsibly connect data on people, devices and locations, continuously corroborated through billions of transactions. Neustar serves more than 8,000 clients worldwide, including 60 of the Fortune 100. Learn how your company can benefit from the power of trusted connections here: https://www.home.neustar .

# # #

Link:

ClickThru

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Special Olympics Airlift Takes Flight Nationwide; Dove 1 Arrives at St. Paul Downtown Airport19.6.2026 17:09:00 CEST | Press release

Approximately 130 Cessna, Beechcraft and Hawker aircraft and volunteer pilots mobilize to transport more than 800 Special Olympics athletes and coaches to the 2026 Special Olympics USA Games The 2026 Special Olympics Airlift officially took flight today as all participating Cessna, Beechcraft and Hawker aircraft, known as Doves, departed from airports across the country. Dove 1 for arrival day, a Cessna Citation Latitude generously operated by Prent Corporation, landed at St. Paul Downtown Airport (STP) carrying Special Olympic athletes and delegation members, signaling the start of Airlift arrivals for the Special Olympics USA Games. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260619085293/en/ Special Olympics Airlift takes flight nationwide; Dove 1 arrives at St. Paul Downtown Airport (Photo credit: Textron Aviation). The arrival signals the start of the world’s largest cumulative peacetime airlift spanning more than 40

Record Currency Management Participates in Innovative European Bank for Reconstruction and Development (EBRD) -Backed Mongolian Tugrik Transaction19.6.2026 16:53:00 CEST | Press release

Record Currency Management Ltd (RCM), subsidiary of London-listed Record plc (Record Financial Group), is pleased to announce its participation in an innovative local currency bond transaction issued by the European Bank for Reconstruction and Development (EBRD), supporting the development of Mongolia's capital markets while providing institutional investors with access to attractive frontier market opportunities. RCM is the UK currency management arm of Record Financial Group, the London-listed specialist investment group managing USD 115 billion of assets on behalf of institutional clients worldwide. Record's client base comprises pension funds, foundations, sovereign institutions and other asset managers, with whom the Group has built long-standing relationships through its focus on bespoke investment and risk management solutions. Headquartered in London, Record has offices in Hamburg, Zurich, Zug, New York, and Hong Kong. The investment forms part of Record Financial Group's broad

Plasma One Launches to Herald a New Era of Stablecoin Banking19.6.2026 14:29:00 CEST | Press release

Plasma has today announced the launch of Plasma One, its flagship financial product designed to make digital dollars usable for everyday spending, sending and earning. Plasma One is designed to make stablecoins feel like money, only better - more accessible, reliable and efficient. For years, stablecoin adoption has been held back by a fragmented system and poor user experience. We have seen wallets in one place, exchanges in another, and costly off-ramps standing between digital dollars and daily life. Plasma One brings that experience together in a single app, giving users a simple way to spend, send and earn with stablecoins from one account with zero fees. Headquartered in London, the city that gave rise to Revolut, Wise and Monzo, Plasma is making a bigger bet, that the next generation of consumer banking will be built on stablecoin rails, not legacy banking infrastructure. Underneath Plasma One is the Plasma Network, Plasma’s own blockchain, purpose-built to move stablecoins inst

IQM Appoints Craig Ciesla, Former Illumina VP, as CTO; Inés de Vega Becomes Chief Scientist19.6.2026 09:00:00 CEST | Press release

Ciesla is a seasoned deep tech executive with more than 25 years of experience delivering products across industries — from startups to Fortune 500 companies. De Vega brings more than 20 years of experience advancing quantum technologies from fundamental research to intellectual property and industrial applications. IQM Quantum Computers, the global leader in superconducting quantum computers, today announced the appointments of Dr. Craig Ciesla as Chief Technology Officer (CTO) and Dr. Inés de Vega as Chief Scientist, as she transitions from her role as Vice President of Quantum Solutions, deepening IQM´s leadership as the company prepares for its planned Nasdaq listing through a merger with Real Asset Acquisition Corp. (Nasdaq: RAAQ). This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260619693929/en/ From left to right: Dr. Inés de Vega, Chief Scientist, and Dr. Craig Ciesla, Chief Technology Officer. Ciesla, an experienced d

Teijin Receives Approval for Additional Indications of XEOMIN® for Cervical Dystonia and Blepharospasm in Japan19.6.2026 09:00:00 CEST | Press release

Teijin Pharma Limited, the core company of the Teijin Group’s healthcare business, and Merz Therapeutics GmbH, a leading player in neurology-focused specialty pharma, jointly announced today that Japan’s Ministry of Health, Labour and Welfare (MHLW) has approved the additional indications for XEOMIN® (incobotulinumtoxinA) for the treatment of cervical dystonia and blepharospasm. This approval represents the fourth and fifth indications for XEOMIN® authorized in Japan, alongside its existing approvals for the treatment of upper limb spasticity, lower limb spasticity and chronic sialorrhea. Cervical dystonia is a focal dystonia characterized by involuntary contractions of the neck muscles, resulting in abnormal or repetitive movements and postures.1 Blepharospasm is also a focal dystonia, characterized by excessive involuntary contractions of the muscles surrounding the eye.2 Both conditions significantly impact patients’ quality of life. The approval by MHLW is based on Phase III clinic

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye