Neustar: DDoS Attacks Increase 180% in 2019 Compared To 2018
Neustar, Inc., a global information services and technology company and leader in identity resolution, announced that its Security Operations Center (SOC) saw a 168% increase in distributed denial-of-service (DDoS) attacks in Q4 2019, compared with Q4 2018, and a 180% increase overall in 2019 vs. 2018. According to Neustar’s latest cyber threats and trends report, released today, the company saw DDoS attacks across all size categories increase in 2019, with attacks sized 5 Gbps and below seeing the largest growth. These small-scale attacks made up more than three quarters of all attacks the company mitigated on behalf of its customers in 2019.
DDoS attacks taking varied forms
In 2019, the largest threat Neustar mitigated, at 587 gigabits per second (Gbps), was 31% larger than the largest attack of 2018, while the maximum attack intensity observed in 2019, 343 million packets per second (Mpps), was 252% higher than that of the most intense attack seen in 2018. However, despite these higher peaks, the average attack size (12 Gbps) and intensity (3 Mpps) remained consistent year over year. The longest single, uninterrupted attack experienced in 2019 lasted three days, 13 hours and eight minutes.
Though the number of attacks increased significantly across all size categories, small-scale attacks (5 Gbps and below) again saw the largest growth in 2019, continuing the trend from the previous year. The combination of DDoS-for-hire and botnet rental services has made DDoS attacks much easier to execute, but the fact that perpetrators seem to be in many cases choosing to engage in small-scale attacks suggests that their goal may often be something other than taking a site completely offline.
“Large, headline-making DDoS attacks do still take place, but many cybersecurity professionals believe that smaller attacks are being used simply to degrade site performance or as a smokescreen for other forms of cybercrime, such as data theft or network infiltration, which the perpetrator can execute more easily while the target’s security team is busy fighting a DDoS attack,” said Rodney Joffe, senior vice president, senior technologist and fellow at Neustar. “Furthermore, with the current move of the bulk of the workforce globally to a work from home model, we expect to see a significant increase in DDoS attacks against VPN infrastructure. This risk makes an ‘always on’ DDoS mitigation service even more critical.”
In addition to conventional DDoS attacks, which seek to exhaust bandwidth, in 2019 Neustar also observed an increase in network protocol or state exhaustion attacks, which target network infrastructure directly. Volumetric attacks continued to proliferate as well, with attackers using new DDoS vectors such as Apple Remote Management Services, Web Services Dynamic Discovery, Ubiquiti Discovery Protocol and the Constrained Application Protocol.
Said Joffe, “During the shift to teleworking at scale, we would not be surprised to see the VPN protocol ports added to these targeted attacks.”
Two- and three-vector attacks ‘just right’ for attackers
In 2019, approximately 85% of all attacks used two or more threat vectors. That number is comparable to the 2018 figure; however, the number of attacks involving two or three vectors rose from 55% to 70%, with correspondingly fewer simple single-vector attacks and complex four- and five-vector attacks, suggesting that attackers have settled into the Goldilocks zone for attacks.
Security professionals continue to view DDoS attacks as a growing threat. According to the most recent Neustar International Security Council (NISC) survey, when asked which vectors they perceived to be increasing threats during November and December 2019, senior-level cybersecurity decision-makers cited social engineering via email most frequently (59%), followed by DDoS (58%) and ransomware (56%).
Web attacks increasing
2019 saw web attacks on the rise as well. Most companies recognise the danger that slow-loading websites pose to their business and attempt to protect them with web application firewalls. In the most recent NISC survey, 98% of respondents agreed that a WAF was an essential component of their security infrastructure. However, as more and more enterprises use multiple cloud providers, often involving a mix of public and private clouds, the need for consistent security across applications and platforms is growing.
“Web attacks can be difficult to track because some variation in the performance of websites is to be expected, but they are increasingly critical for businesses to address. One survey found 45% of consumers are less likely to make a purchase when they experience a slow loading website, and 37% are less likely to return to a retailer if they experience slow loading pages,” added Joffe.
A vendor-neutral cloud WAF, coupled with DDoS protection, can eliminate a large portion of threats, allowing enterprise application experts to focus their attention on the more specialised attacks. Continuous updates from a reliable threat feed can also deliver information on bad IPs and botnet command and control (C&C) sites before they are able to damage the network.
A complimentary copy of the Neustar 2019: The Year in Review cyber threats and trends report is available here.
-ENDS-
About Neustar
Neustar is an information services and technology company and a leader in identity resolution providing the data and technology that enables trusted connections between companies and people at the moments that matter most. Neustar offers industry-leading solutions in Marketing, Risk, Communications, Security and Registry that responsibly connect data on people, devices and locations, continuously corroborated through billions of transactions. Neustar serves more than 8,000 clients worldwide, including 60 of the Fortune 100. Learn how your company can benefit from the power of trusted connections here: https://www.home.neustar.
# # #
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20200326005046/en/
Contact information
Jenny Morris
Hotwire for Neustar
+44 (0)7393465529
neustaruk@hotwireglobal.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Civil Air Patrol Expands Fleet With 15 New Cessna Aircraft to Support Lifesaving and Community Missions15.12.2025 18:00:00 EET | Press release
Textron Aviation Inc., a Textron Inc. (NYSE: TXT) company, announced today that Civil Air Patrol (CAP), the world’s largest operator of Cessna aircraft, is strengthening its national mission capabilities with an order for 15 additional piston-engine aircraft, including seven Cessna Skyhawk 172 and eight Cessna Skylane 182 models scheduled for delivery throughout 2026. The order follows recent deliveries of an additional two Cessna Skylane and one Cessna Turbo Stationair HD aircraft, expanding CAP’s fleet to more than 500 Cessna aircraft nationwide. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251215613573/en/ Delivery of an additional two Cessna Skylane and one Cessna Turbo Stationair HD aircraft joins CAP’s fleet of more than 500 Cessna aircraft nationwide. Cessna aircraft are designed and produced by Textron Aviation. “Civil Air Patrol’s missions demand aircraft that are reliable, versatile and ready to perform in critic
Winston & Strawn and Taylor Wessing UK to Combine, Creating a Premier Transatlantic Law Firm15.12.2025 17:52:00 EET | Press release
Winston & Strawn and Taylor Wessing’s UK-led business announced today their intention to combine, creating a premier transatlantic law firm that would operate under a new shared name, Winston Taylor. The combination responds to increasing client demand for seamlessly integrated US–UK–EU counsel for the businesses, people, and markets driving capital and innovation. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251215914957/en/ The combination once final will unite two international firms with more than 400 years of combined history, complementary strengths, and a common vision to meet clients’ evolving global needs. The combined firm will include more than 1,400 lawyers, establishing one of the largest transatlantic firms whose footprint is primarily in the United States, the United Kingdom, and Europe, and also in Latin America and the Middle East. Leveraging significant strength and scale in major litigation, critical tra
Despite Barriers, Financial Institutions are Clear About AI's Greatest Impact15.12.2025 17:32:00 EET | Press release
HTEC, a global AI-first provider of software and hardware design and engineering services, today released The State of AI in Financial Services & Insurance 2025, a first industry subset of its global research report in AI. This publication offers one of the clearest views to date into how financial institutions are adopting and scaling artificial intelligence. This industry-focused report analyzes insights from 250 C-suite leaders within financial services and insurance, drawn from HTEC’s broader global study of 1,529 C-suite executives—including CIOs, CTOs, CDOs, CPOs, CFOs, COOs, CEOs and CSOs—across Saudi Arabia, the UAE, the United Kingdom, the United States, Germany and Spain. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251215790717/en/ Executive Summary: The State of AI in Financial Services and Insurance 2025 The findings confirm a decisive shift in the industry: not a single respondent said AI is not a priority. L
Align Partners Sends Second Public Shareholder Letter to Coway, Urging Announcement of Revised Value-up Plan by January 30, 202615.12.2025 16:54:00 EET | Press release
Align Partners Capital Management Inc. (“Align Partners”), a shareholder of Coway Co., Ltd. (“Coway”) since 2023 holding more than 4% of the Company’s outstanding shares through funds it manages or advises, announced that it has sent a second public shareholder letter to Coway’s Board of Directors. The letter calls for measures to address the company’s chronic undervaluation and enhance shareholder value. Align Partners has requested that Coway announce a revised corporate Value-up Plan reflecting these proposals by January 30, 2026. In the letter, Align Partners assessed Coway’s February 2025 plan as insufficient to address Coway’s persistent undervaluation and urged the Board to incorporate seven measures: (1) clear mid-to-long-term valuation and ROE targets with execution plans; (2) clarified and strengthened target capital structure policy; (3) updated shareholder return policy reflecting both the target capital structure policy and new dividend income tax separation regime; (4) en
Marathon Asset Management Provides Junior Capital Financing to EXALTA Group15.12.2025 16:00:00 EET | Press release
Marathon Asset Management (“Marathon”), a leading global credit manager with more than $24 billion of assets under management, is pleased to announce the closing of a junior capital financing to EXALTA Group (“EXALTA” or the “Company”), a portfolio company of Montagu. Marathon led the financing that supported the formation of EXALTA through the strategic merger of three Montagu-owned companies including Intech, Resolve Surgical Technologies, and Tyber Medical. The transaction marks one of many successful transactions for Marathon’s European Credit business in the healthcare sector, where the firm has a knowledge-based advantage with a dedicated Healthcare Finance business and specialized medical advisory board providing sector insight to middle market companies. EXALTA is a global leader in orthopaedic contract design and manufacturing for spine, trauma, extremities, sports medicine and enabling technology providing comprehensive solutions to OEMs within the medical technology industry
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
