Digital Media Net - Your Gateway To Digital media Creation. News and information on Digital Video, VR, Animation, Visual Effects, Mac Based media. Post Production, CAD, Sound and Music
Categories: News

Nexusguard Research Shows DNS Amplification Attacks Grew Nearly 4,800% Year-over-Year; Highlighted by Sharp Increase in TCP SYN Flood

Enterprise networks and telcos must take heed of the resurgence of old threats to avoid junk traffic consuming user bandwidth

SAN FRANCISCO–(BUSINESS WIRE)–DNS amplification attacks continue to increase in number, growing 4,788% over Q3 2018, according to Nexusguard’s Q3 2019 Threat Report. DNSSEC (Domain Name System Security Extensions) remains the main driver of growth of DNS amplification attacks in the quarter, yet Nexusguard analysts have detected a sharp and concerning rise in TCP SYN Flood attacks. TCP SYN Flood is not a new method, but findings indicate that techniques have grown in sophistication and have emerged as the third most used attack vector, behind DNS amplification and HTTP flood attacks.

Cyberattackers have long favored DDoS attacks that amplify damage beyond the resources required, but suitable reflectors or amplifiers are not as widely available for DNS amplification and memcached reflection attacks. In contrast, any server with an open TCP port is an ideal attack vector, and such reflectors are widely available and easy to access to cause SYN Flood reflection attacks.

Consequently, SYN Flood reflection not only hits targeted victims, but also can impact innocent users, including individuals, businesses, and other organizations. These innocent victims end up having to process large volumes of spoofed requests and what appear to be legitimate replies from the attack target. As a result, bystanders can incur hefty fees for bandwidth consumed by junk traffic, or even suffer from secondary outages.

“Our research findings revealed that even plain-vanilla network attacks could be turned into complex, stealthy attacks leveraging advanced techniques, from the bit-and-piece attacks, also known as carpet bombing, we identified last year, to the emergence of Distributed Reflective DoS (DRDoS) attacks in the third quarter. Telcos and enterprises must take note while these tactics don’t cause notable strain on network bandwidth, which may go undetected, but that they are powerful enough to impact their service. Advanced mitigation techniques are required to address these threats,” said Juniman Kasman, chief technology officer for Nexusguard.

Report findings also showed that 44% of Q3 attack traffic came from botnet-hijacked Windows OS computers and servers. The second largest source of traffic came from iOS-equipped mobile devices. The total number of attacks has mirrored patterns observed in 2019, with Q1 seeing the highest number attacks and numbers dropping over Q2 and Q3. While attack volume has decreased since Q2 2019, levels grew more than 85% compared to the same quarter last year. More than half of all global attacks originated in China, Turkey or the United States.

Nexusguard’s quarterly DDoS threat research gathers attack data from botnet scanning, honeypots, CSPs and traffic moving between attackers and their targets to help companies identify vulnerabilities and stay informed about global cyber security trends. Read the full “Q3 2019 Threat Report” for more details.

About Nexusguard

Founded in 2008, Nexusguard is a leading cloud-based distributed denial of service (DDoS) security solution provider fighting malicious internet attacks. Nexusguard ensures uninterrupted internet service, visibility, optimization and performance. Nexusguard is focused on developing and providing the best cybersecurity solution for every client across a range of industries with specific business and technical requirements. Nexusguard also enables communication service providers to deliver DDoS protection solution as a service. Nexusguard delivers on its promise to provide you with peace of mind by countering threats and ensuring maximum uptime. Visit www.nexusguard.com for more information.

Contacts

Justine Boucher

Metis Communications

+1 617-236-0500

nexusguard@metiscomm.com

Benjamin Yip

Nexusguard

Head of marketing

+1 415-299-8550

Benjamin.Yip@Nexusguard.com

Staff

Recent Posts

Gopuff Invites the World to “Bring The Magic” to Everyday Experiences with the Launch of Its Largest-Ever Brand Campaign

The imaginative, 360° campaign designed to capture the magic of the Gopuff experience debuts during…

3 days ago

Metals Acquisition Limited Provides Notice of Release of First Quarter 2024 Results and Conference Call Details

ST. HELIER, Jersey--(BUSINESS WIRE)--Metals Acquisition Limited ARBN 671 963 198 (NYSE: MTAL; ASX: MAC), a…

3 days ago

New UFC FIGHT CARD RUMMY to Feature Live Tournament, Fan Favorite UFC Athletes and More

UFC Partners With Magmic and Skillz on Launch/Kicks Off a 2-week Live Tournament April 19th…

3 days ago

Vaunt Marks First Cash-Positive Month, With Rapid Growth Highlighting Success in Tackling Empty-leg Flights

 - Launched in Q4 2023, Vaunt has reached $500K in annual recurring revenue, and 25,000+…

3 days ago

Nex and Hasbro Expand Collaboration to Transform Beloved Family Board Games Into Active Play Experiences

Three New Games Based on Classic Hasbro Titles Are Set to Launch Exclusively on Nex…

3 days ago

Franklin Templeton Announces Availability of Peer-to-Peer Transfers for Franklin OnChain U.S. Government Money Fund

The first U.S.-registered mutual fund to process transactions and record share ownership on a public…

3 days ago