Business Wire

Neustar highlights rise in ransom-related DDoS attacks and greater use of existing attack vectors

Share

Neustar, Inc., a global information services and technology company and leader in identity resolution, has today published its report entitled ‘Cyber Threats and Trends: Pandemic Style’, detailing the security risks faced by companies as the COVID-19 pandemic accelerated the digital revolution.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20210128005015/en/

To view this piece of content from mms.businesswire.com, please give your consent at the top of this page.

Figure 1: Percentage change in number of attacks by size category, 2020 vs. 2019 (Graphic: Business Wire)

Informed by data from Neustar’s Security Operations Center (SOC), the report reveals a 154 percent increase in the number of attacks between 2019 and 2020, with growth in ransom-related DDoS (RDDoS) attacks and a rise in use of existing attack vectors, including web applications. The report also provides key details around the amount, size, duration and intensity of DDoS attacks throughout 2020 to keep cyber security professionals informed.

DDoS ransom attacks on the rise

Primarily, the report highlights a rise in ransom-related DDoS attacks, by which extortion demands are issued against organisations. These attacks grew in persistence and sophistication, as well as by target, compared to previous years.

While RDDoS is not a new phenomenon for many online industries, attackers have recently set their sights on organisations across a wider variety of sectors including financial services, government and telecommunications.

One reason for the adoption of DDoS as a ransom vector, as opposed to using malware, is the ease with which such attacks can be carried out. Infecting an organisation’s networks with malware or ransomware takes time and careful planning. Launching a DDoS attack, in comparison, has become relatively simple and has the added benefit of being harder to trace back to its origin.

2020 saw bad actors posing as prolific threat groups such as Fancy Bear in ransom notes – capitalising on fear of high-profile nation-state attacks – and threatening DDoS attacks unless the ransom was paid within a specific time frame.

“Organisations should avoid paying these ransoms,” said Michael Kaczmarek, Vice President of Security Product Management at Neustar. “Instead, any attack should be reported to the nearest law enforcement field office, as the information may help identify the attackers and ultimately hold them accountable. Beyond this, organisations can prepare by setting up a robust DDoS mitigation strategy, including assessing the risks, evaluating available solutions, considering mitigation strategies and keeping their plan and provider up to date.”

Existing attack vectors

While 2020 did not see any dramatically new attack vectors emerge, there was certainly a greater use of existing ones like web applications, which were the top targeted hacking vector in 2020.

Numerous built-in access protocols, which have been increasingly exploited as attack vectors, came up again in 2020. In fact, the FBI issued an alert in July warning that common network protocols like ARMS (Apple Remote Management Services), WS-DD (Web Services Dynamic Discovery) and CoAP (Constrained Application Protocol) were being abused by hackers to conduct DDoS reflection and amplification attacks – while cautioning that disabling them could cause a loss in business productivity and connectivity.

In response to this heightened threat level, the results of the latest Neustar International Security Council (NISC) survey indicated that more cyber security professionals are outsourcing DDoS mitigation, having increased by a full percentage point in the last quarter alone.

DNS attacks

In 2020, Neustar also saw an increase in attacks on the Domain Name System itself — or what look like attacks, as bad actors abuse the system.

“Acting as the Internet’s address book and backbone of today’s digital services, it’s unsurprising that DNS is an increasingly appealing target for malicious actors, particularly as more consumers turn to websites during peak online shopping periods,” said Rodney Joffe, Senior Vice President and Fellow, Neustar.

Recent NISC survey data supports this trend, with three in five respondents in a December 2020 study reporting they had fallen victim to a DNS attack in the last year. Even more concerning, over 70 percent of organisations admitted to having reservations about their awareness of, and ability to respond to, DNS attacks.

The total number of DDoS attacks Neustar mitigated on behalf of its customers in 2020 increased by more than two and a half times over 2019. The largest attack size observed during this time was also the largest that Neustar has ever mitigated and, at 1.17 Terabits per second (Tbps), among the largest ever seen on the Internet. The longest duration for a single attack was also the longest Neustar has mitigated, at 5 days and 18 hours.

A copy of the Neustar report is available here.

-ENDS-

About Neustar

Neustar is an information services and technology company and a leader in identity resolution providing the data and technology that enables trusted connections between companies and people at the moments that matter most. Neustar offers industry-leading solutions in Marketing, Risk, Communications and Security that responsibly connect data on people, devices and locations, continuously corroborated through billions of transactions. Neustar serves more than 8,000 clients worldwide, including 60 of the Fortune 100. Learn how your company can benefit from the power of trusted connections here: https://www.home.neustar.

# # #

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Jenny Morris
Hotwire for Neustar
+44 (0)7393465529
neustaruk@hotwireglobal.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

flatexDEGIRO Starts Into Expected Record Year 2024 With a Jump in Revenues and Earnings25.4.2024 21:19:00 EEST | Press release

flatexDEGIRO starts into expected record year 2024 with a jump in revenues and earnings Revenues increased by 25% to € 123 million (Q1 2023: € 98 million) flatexDEGIRO benefits from both rising interest income and a significant increase in commission income per transaction EBITDA improves by 177% to € 54 million (Q1 2023: € 19 million) Consolidated net profit increases by 340% to € 30 million (Q1 2023: € 7 million) 121,000 new customer accounts in Q1 2024 increase customer base to over 2.8 million (March 2023: 2.5 million) Net cash inflows of € 1.8 billion in Q1 2024 Revenues and consolidated net income in 2024 expected to be at the upper end of the guidance corridor (revenue growth of 5-15% and increase in consolidated net income of 25-50%) For the first time, the Management Board and Supervisory Board will propose to the upcoming Annual General Meeting the authorization to buy back up to 10% of the share capital as well as an additional dividend of 4 cents per share Dr. Benon Janos,

OpenGate Capital Completes Sale of SMAC25.4.2024 20:14:00 EEST | Press release

OpenGate Capital (“OpenGate”), a global private equity firm, announced today that it has completed the sale of SMAC, a provider of waterproofing and building envelope systems, to Compagnie Financière Jousset (“CFJ”) and the SMAC management team. Terms of the transaction were not disclosed. SMAC was established in 1884 and has grown into a leader in the French waterproofing and facades market. OpenGate acquired the business in 2019 from Colas Group, a subsidiary of Bouygues SA. Following the carve-out and stabilization of SMAC in the first year of investment, OpenGate embarked on a three-prong approach to sell the manufacturing (“Industrie”) business lines in 2020 and 2021 and achieved the following results: March 2021: Axter (membranes business) was sold to IKO April 2021: Skydôme (skylights business) was sold to Kingspan January 2022: Résipoly (resins business) was sold to MAPEI After the disposals of the Industrie business lines, SMAC was then able to focus on its core “Travaux” (ins

Farcana Announces Gateway: Showdown - Playtest Kicks Off April 30th, with a 1,000,000 $FAR token prize pool!25.4.2024 18:40:00 EEST | Press release

Farcana, a highly anticipated competitive, team-based hero shooter, announces Gateway: Showdown, a public playtest event taking place from April 30th to May 4th, 2024. This playtest serves as a crucial opportunity for Farcana to gather valuable player feedback, showcase the latest iteration of the game before its official launch and offer players a chance to claim a portion of the 1,000,000 $FAR token prize pool. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240425936808/en/ Farcana Announces Gateway Showdown - Playtest Kicks Off April 30th, with a 1,000,000 $FAR token prize pool! (Photo: AETOSWire) Gateway: Showdown welcomes all aspiring heroes with a signup process designed for ease and accessibility. Players can visit the official Farcana website at https://www.farcana.com to download the game client, create an account, and be automatically enrolled in the playtest. Every match played during the event will contribute to

Antognolla at International Hospitality Investment Forum: Growing Interest in the Italian Market from Hotel Operators and Investors25.4.2024 17:39:00 EEST | Press release

Antognolla Resort & Residences joined world-class hospitality experts at the Hospitality Investment Forum EMEA (IHIF EMEA) on 15-17 April in Berlin. With over 2,500 attendees this year, IHIF EMEA remains one of the largest gatherings of industry professionals in the region. Hospitality experts and event participants reaffirmed the growing interest among hotel operators in Italy, evident from the number of prestigious international brands entering the Italian market. The hospitality market in the country is becoming more identity-driven, with the majority of hotel keys in the upscale and luxury category being branded. International operators are increasingly attracted to the country year by year: almost 70% of the properties in the pipeline will belong to international chains by 2026. Andrey Yakunin, Chairman of the Board of Directors of Antognolla Resort & Residences commented: “As international experts discussed during IHIF, identity-driven, branded projects are set to become the lead

Digital Transformation’s Next Era: Generative AI and Laserfiche 12 at 2024 Empower Conference25.4.2024 17:30:00 EEST | Press release

Preparing organizations for the next AI-driven phase of digital transformation is on the agenda at the 2024 Empower conference, hosted by Laserfiche — the leading SaaS provider of intelligent content management and business process automation — in Las Vegas through April 25. Laserfiche shines a spotlight on solutions that reduce complexity and accelerate information flow across the enterprise to help organizations manage increasing amounts of data. Empower attendees got an early look at the latest Laserfiche AI features, including Laserfiche AI Document Summarization. The new offering, powered by generative AI, eliminates tedious sifting through documents by generating concise summaries of documents containing either text or transcribed audio. Laserfiche AI Document Summarization, which represents one milestone in the Laserfiche AI vision to transform the workplace, will be available in the upcoming Laserfiche Cloud release on April 30, 2024. “At Laserfiche, we believe AI will impact p

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
HiddenA line styled icon from Orion Icon Library.Eye