Neustar highlights rise in ransom-related DDoS attacks and greater use of existing attack vectors
28.1.2021 09:30:00 CET | Business Wire | Press Release
Neustar, Inc., a global information services and technology company and leader in identity resolution, has today published its report entitled ‘Cyber Threats and Trends: Pandemic Style’, detailing the security risks faced by companies as the COVID-19 pandemic accelerated the digital revolution.
This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20210128005015/en/
Figure 1: Percentage change in number of attacks by size category, 2020 vs. 2019 (Graphic: Business Wire)
Informed by data from Neustar’s Security Operations Center (SOC), the report reveals a 154 percent increase in the number of attacks between 2019 and 2020, with growth in ransom-related DDoS (RDDoS) attacks and a rise in use of existing attack vectors, including web applications. The report also provides key details around the amount, size, duration and intensity of DDoS attacks throughout 2020 to keep cyber security professionals informed.
DDoS ransom attacks on the rise
Primarily, the report highlights a rise in ransom-related DDoS attacks, by which extortion demands are issued against organisations. These attacks grew in persistence and sophistication, as well as by target, compared to previous years.
While RDDoS is not a new phenomenon for many online industries, attackers have recently set their sights on organisations across a wider variety of sectors including financial services, government and telecommunications.
One reason for the adoption of DDoS as a ransom vector, as opposed to using malware, is the ease with which such attacks can be carried out. Infecting an organisation’s networks with malware or ransomware takes time and careful planning. Launching a DDoS attack, in comparison, has become relatively simple and has the added benefit of being harder to trace back to its origin.
2020 saw bad actors posing as prolific threat groups such as Fancy Bear in ransom notes – capitalising on fear of high-profile nation-state attacks – and threatening DDoS attacks unless the ransom was paid within a specific time frame.
“Organisations should avoid paying these ransoms,” said Michael Kaczmarek, Vice President of Security Product Management at Neustar. “Instead, any attack should be reported to the nearest law enforcement field office, as the information may help identify the attackers and ultimately hold them accountable. Beyond this, organisations can prepare by setting up a robust DDoS mitigation strategy, including assessing the risks, evaluating available solutions, considering mitigation strategies and keeping their plan and provider up to date.”
Existing attack vectors
While 2020 did not see any dramatically new attack vectors emerge, there was certainly a greater use of existing ones like web applications, which were the top targeted hacking vector in 2020.
Numerous built-in access protocols, which have been increasingly exploited as attack vectors, came up again in 2020. In fact, the FBI issued an alert in July warning that common network protocols like ARMS (Apple Remote Management Services), WS-DD (Web Services Dynamic Discovery) and CoAP (Constrained Application Protocol) were being abused by hackers to conduct DDoS reflection and amplification attacks – while cautioning that disabling them could cause a loss in business productivity and connectivity.
In response to this heightened threat level, the results of the latest Neustar International Security Council (NISC) survey indicated that more cyber security professionals are outsourcing DDoS mitigation, having increased by a full percentage point in the last quarter alone.
DNS attacks
In 2020, Neustar also saw an increase in attacks on the Domain Name System itself — or what look like attacks, as bad actors abuse the system.
“Acting as the Internet’s address book and backbone of today’s digital services, it’s unsurprising that DNS is an increasingly appealing target for malicious actors, particularly as more consumers turn to websites during peak online shopping periods,” said Rodney Joffe, Senior Vice President and Fellow, Neustar.
Recent NISC survey data supports this trend, with three in five respondents in a December 2020 study reporting they had fallen victim to a DNS attack in the last year. Even more concerning, over 70 percent of organisations admitted to having reservations about their awareness of, and ability to respond to, DNS attacks.
The total number of DDoS attacks Neustar mitigated on behalf of its customers in 2020 increased by more than two and a half times over 2019. The largest attack size observed during this time was also the largest that Neustar has ever mitigated and, at 1.17 Terabits per second (Tbps), among the largest ever seen on the Internet. The longest duration for a single attack was also the longest Neustar has mitigated, at 5 days and 18 hours.
A copy of the Neustar report is available here.
-ENDS-
About Neustar
Neustar is an information services and technology company and a leader in identity resolution providing the data and technology that enables trusted connections between companies and people at the moments that matter most. Neustar offers industry-leading solutions in Marketing, Risk, Communications and Security that responsibly connect data on people, devices and locations, continuously corroborated through billions of transactions. Neustar serves more than 8,000 clients worldwide, including 60 of the Fortune 100. Learn how your company can benefit from the power of trusted connections here: https://www.home.neustar.
# # #
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210128005015/en/
Contact information
Jenny Morris
Hotwire for Neustar
+44 (0)7393465529
neustaruk@hotwireglobal.com
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Dubai’s Medcare Hospital Becomes the World’s First to Treat an Adult Spinal Muscular Atrophy (SMA) Patient Outside the US28.4.2026 15:57:00 CEST | Press Release
Medcare Royal Speciality Hospital (MRSH) in Dubai has become the world’s first hospital outside the USA, to offer a newly licensed intrathecal gene therapy - Itvisma, to adult patients with Spinal Muscular Atrophy (SMA). This one-time treatment was recently administered to a 22-year-old Egyptian patient, who was diagnosed at 18 months and confined to a wheelchair for most of his life. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260428038416/en/ Dr. Vivek Mundada with Medcare multidisciplinary medical team (Photo: AETOSWire) Last year, Medcare also became the first healthcare provider globally to administer the newly licensed Itvisma to a four-year-old international SMA patient. SMA is a rare neuromuscular disease that leads to progressive muscle weakness and loss of mobility, impacting movement, breathing, and swallowing. Until now, advancements in gene therapy for SMA were primarily restricted to children under the age o
Perpetual Atomics and QSA Global Fuel the World’s First Americium-Powered Radioisotope Heater Unit Core28.4.2026 15:48:00 CEST | Press Release
In a landmark achievement for international space exploration, Perpetual Atomics, QSA Global, Inc. and the University of Leicester have completed the first historical production of an Americium-fuelled Radioisotope Heater Unit (RHU) full scale core containing ceramic form americium-241 pellets in a metal containment structure. This breakthrough builds on the successful americium pelleting work in late 2025 and on two decades of experience in leading the development of americium space nuclear power systems by the Leicester team. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260428027123/en/ QSA Global and Perpetual Atomics Team Born out of ENDURE, a European Space Agency (ESA) project, and part of a transatlantic collaboration, this achievement provides the steppingstones for an industrial pathway to deliver radioisotope power systems for spacecraft enabling these to survive and thrive in the most extreme environments in the
Alipay Launches AI Payment Processing Product to Help Businesses and OPCs Thrive in the Agentic Economy28.4.2026 15:47:00 CEST | Press Release
Alipay today launched a new AI payment processing product that enables businesses, large and small, including One Person Companies (OPCs) in the Chinese mainland, to receive payments seamlessly when autonomous AI agents, including OpenClaw-type agents, purchase their services. This new product is being launched as AI agents are increasingly executing tasks on behalf of users, from booking travel and comparing prices, to allocating computing power and buying tokens. The product is available on Alipay’s website (https://aipay.alipay.com/). With Alipay’s AI payment processing product, small and medium-sized businesses do not need to build complex payment or settlement systems. By simply onboarding their monetizable services, businesses can reach more customers and receive payment each time an AI agent purchases their service. Bocha, an AI-powered search tool offering web search support for AI applications including DeepSeek, has already adopted Alipay’s AI payment processing product, tran
HTEC Research: Only One in Three Healthcare Organizations is Ready to Scale AI28.4.2026 15:22:00 CEST | Press Release
AI is already embedded across healthcare and life sciences. Most organizations are deploying it, and confidence in its potential is high. Yet for many, the real challenge is only just beginning. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260428872907/en/ HTEC, a global AI‑first provider of software and hardware design and engineering services, today released new research based on a global survey of 253 C-level HLS executives across the United States, United Kingdom, Germany, Spain, Saudi Arabia, and the UAE. AI is already embedded across healthcare and life sciences. Most organizations are deploying AI, and confidence in its potential is high. Yet for many, the real challenge is only just beginning. HTEC, a global AI‑first provider of software and hardware design and engineering services, today released new research based on a global survey of 253 C-level HLS executives across the United States, United Kingdom, Germany,
JPMorganChase Named First-Ever Global Banking Partner of the Olympic Games28.4.2026 15:00:00 CEST | Press Release
The International Olympic Committee (IOC) and JPMorganChase today announced a landmark Worldwide Olympic Partnership, making JPMorganChase the first Global Banking Partner in Olympic history. The partnership includes the Los Angeles 2028 Olympic and Paralympic Games (LA28 Games) and the French Alps 2030 Olympic and Paralympic Winter Games. The firm has also reached an agreement with LA28 to become the Official Bank of Team USA and LA28, and a Founding Partner of the LA28 Games. The partnership reflects a shared commitment to ambition and excellence, and places athletes and communities at its core. Kirsty Coventry, President of the IOC, commented: “JPMorganChase is the first Global Partner from the banking sector in Olympic history, and we are proud to welcome them to the Worldwide Olympic Partner programme. This partnership reflects our shared values of ambition, excellence and will support the Olympic Movement and sport around the world. JPMorganChase’s global reach and expertise will
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
