ITNewsAfrica logo

linkedin   twitter icon   facebook


DDoS in a time of pandemic: NETSCOUT’s latest report shows defences against cyberattacks allow online world to fight back


JOHANNESBURG – June 15, 2021 – In the eye of the online storm that arrived during 2020 with the realities of the global pandemic, service providers and security experts chose not to let cybercriminals win on all fronts, but instead rallied to defend the critical infrastructure of the online world. In the face of the record-breaking cyberattacks of last year, businesses remained connected to their employees, students continued their education via distance learning, and ecommerce revenue increased by leaps and bounds.

So says Richard Hummel, Threat Intelligence Lead at NETSCOUT, a leading global provider of service assurance, security and business analytics, in his introduction to the newly released bi-annual report Threat Intelligence Report for 2020, which also includes NETSCOUT’s 16th annual Worldwide Infrastructure Security Report (WISR).

In the ‘2020 2H Threat Intelligence Report: DDoS in a time of pandemic’, he notes, “Against the backdrop of an unprecedented shift toward online workforce participation across the globe, NETSCOUT’s ATLAS Security Engineering & Response Team (ASERT) observed a huge upsurge in distributed denial-of-service (DDoS) attacks, brute-forcing of access credentials, and malware targeting of internet-connected devices.

“We observed multiple record-breaking events: the most DDoS attacks launched in a single month (929K), the most DDoS attacks in a single year (more than 10 million), and monthly DDoS attack numbers that regularly exceed the 2019 averages by 100,000 to 150,000 attacks. Combined with the weaponisation of new reflection/amplification DDoS attack vectors allowing the abuse of misconfigured RDP over UDP, Plex Media SSDP, DTLS services, an increasingly complex threat landscape rapidly emerged.

“And if that weren’t enough, a new threat actor known as Lazarus Bear Armada launched a global DDoS extortion campaign, using network reconnaissance to launch multivector attacks on critical pandemic infrastructure elements such as VPN concentrators, authoritative and recursive DNS servers, and upstream internet service providers’ (ISPs’) peering and customer aggregation routers.”

DDoS attacks are an attempt to exhaust the resources available to a network, application or service, so that genuine users cannot gain access. Key findings of the report include some of the following points:

  • For the first time in history, the annual number of observed DDoS attacks crossed the 10 million threshold.
  • As the pandemic lockdown took effect, DDoS attacks exceeded 800,000 in March and remained above that threshold for the rest of the year - this is the new norm.
  • A global DDoS extortion campaign began with attacks that took down the New Zealand Stock Exchange in the debut attack.
  • Botmasters are exploiting pandemic vulnerabilities, as remote work and online learning shifted core workforce access away from enterprise-grade protection and toward consumer-grade devices.

Risna Steenkamp, General Manager: ESM Division at Networks Unlimited, says, “The online world – and the defence of its operations and the data it carries - has obviously become more important than ever, and this NETSCOUT report clearly shows how much the COVID-19 pandemic has played into the hands of threat actors.

“Key platforms such as NETSCOUT’s ATLAS have allowed the world’s online communities to withstand these record-breaking attacks during 2020. In a permanently altered digital landscape, it is more important than ever for organisations to be able to thrive online.” NETSCOUT products and solutions are distributed throughout Africa by value-added distributor, Networks Unlimited. To download the full report, please click here.

For more information, contact Janco Taljaard at +27 (0) 11 202 8400, janco.taljaard@nu.co.za

About Networks Unlimited
Networks Unlimited is a value-added distributor, offering the best and latest solutions within the converged technology, data centre, networking, and security landscapes. The company distributes best-of-breed products, including Arbor Networks, Fortinet, F5, Mellanox, ProLabs, Rackmount, RSA, Rubrik, Silver Peak and Tintri. The product portfolio provides solutions from the edge to the data centre, and addresses key areas such as cloud networking and integration, WAN optimisation, application performance management, application delivery networking, Wi-Fi-, mobile- and networking security, load balancing, data centre in-a-box, and storage for virtual machines.

Since its formation in 1994, Networks Unlimited has continually adapted to today's progressively competitive and evolving marketplace, and has reaped the benefits by being a leading value-added distributor (VAD) within the Sub-Saharan Africa market. Networks Unlimited complies with the South African Broad-Based Black Economic Empowerment (B-BBEE) guidelines as a Level 4 Contributor.

Networks Unlimited Africa, Janco Taljaard, +27 (0) 11 202 8400, janco.taljaard@nu.co.za
icomm, Vivienne Fouché, +27 (0) 82 602 1635, vivienne@pr.co.za, www.icomm-pr.co.za




ITNewsAfrica logo

Download Button