Categories: News

Nexusguard Research Shows DNS Amplification Attacks Grew Nearly 4,800% Year-over-Year; Highlighted by Sharp Increase in TCP SYN Flood

Enterprise networks and telcos must take heed of the resurgence of old threats to avoid junk traffic consuming user bandwidth

SAN FRANCISCO, USA - Media OutReach
– 6 January 2020 – DNS amplification attacks continue to
increase in number, growing 4,788% over Q3 2018, according to Nexusguard’s Q3 2019 Threat Report.
DNSSEC (Domain Name System Security Extensions) remains the main driver of
growth of DNS amplification attacks in the quarter, yet Nexusguard analysts
have detected a sharp and concerning rise in TCP SYN Flood attacks. TCP SYN
Flood is not a new method, but findings indicate that techniques have grown in
sophistication and have emerged as the third most used attack vector, behind
DNS amplification and HTTP flood attacks.

 

Cyberattackers have long favored DDoS attacks that amplify damage
beyond the resources required, but suitable reflectors or amplifiers are not as
widely available for DNS amplification and memcached reflection attacks. In
contrast, any server with an open TCP port is an ideal attack vector, and such
reflectors are widely available and easy to access to cause SYN Flood
reflection attacks.

 

Consequently, SYN Flood reflection not only hits targeted victims, but
also can impact innocent users, including individuals, businesses, and other
organizations. These innocent victims end up having to process large volumes of
spoofed requests and what appear to be legitimate replies from the attack
target. As a result, bystanders can incur hefty fees for bandwidth consumed by
junk traffic, or even suffer from secondary outages.

 

“Our research findings revealed that even plain-vanilla network
attacks could be turned into complex, stealthy attacks leveraging advanced
techniques, from the bit-and-piece attacks, also known as carpet bombing, we
identified last year, to the emergence of Distributed Reflective DoS (DRDoS)
attacks in the third quarter. Telcos and enterprises
must take note while these tactics don’t cause
notable strain on network bandwidth, which may go undetected, but that they are powerful enough to impact their service. Advanced
mitigation techniques are required to address
these threats,” said Juniman Kasman, chief technology officer for Nexusguard. ?

 

Report findings also showed that 44% of Q3 attack traffic came from
botnet-hijacked Windows OS computers and servers. The second largest source of
traffic came from iOS-equipped mobile devices. The total number of attacks has
mirrored patterns observed in 2019, with Q1 seeing the highest number attacks
and numbers dropping over Q2 and Q3. While attack volume has decreased since Q2
2019, levels grew more than 85% compared to the same quarter last year. More
than half of all global attacks originated in China, Turkey or the United
States.

 

Nexusguard’s quarterly DDoS threat research gathers attack data from
botnet scanning, honeypots, CSPs and traffic moving between attackers and their
targets to help companies identify vulnerabilities and stay informed about
global cyber security trends. Read the full “Q3 2019 Threat Report”
for more details.

About Nexusguard

Founded in 2008, Nexusguard is a leading cloud-based distributed
denial of service (DDoS) security solution provider fighting malicious internet
attacks. Nexusguard ensures uninterrupted internet service, visibility,
optimization and performance. Nexusguard is focused on developing and providing
the best cybersecurity solution for every client across a range of industries
with specific business and technical requirements. Nexusguard also enables
communication service providers to deliver DDoS protection solution as a
service. Nexusguard delivers on its promise to provide you with peace of mind
by countering threats and ensuring maximum uptime. Visit
www.nexusguard.com for
more information.

Miscw.com

Recent Posts

VinFast officially delivers VF 5 electric cars in Indonesia

JAKARTA, INDONESIA - Media OutReach Newswire - 22 November 2024 - VinFast Auto has officially…

11 hours ago

AlphaX Makes Crypto Easier with Email Login and USDT Memecoins

SYDNEY, AUSTRALIA - Media OutReach Newswire - 22 November 2024 - The global cryptocurrency market…

11 hours ago

Vincom Retail: A Catalyst Driving Vietnam’s Retail Future

HANOI, VIETNAM – Media OutReach Newswire - 22 November 2024 - By capitalizing on its…

15 hours ago

How 5G Transforms Life: A Foreigner’s Journey Through East China’s Digital Revolution

HANGZHOU, CHINA - Media OutReach Newswire - 22 November 2024 - As the 2024 World…

16 hours ago

Explore Life for A Shared Future: 2024 Beijing Changping Forum on Life Science was successfully held

BEIJING, CHINA - Media OutReach Newswire - 22 November 2024 - The 2024 Beijing Changping…

16 hours ago