-

Nexusguard Research Uncovers New “Black Storm” Attack Threat to Communications Service Provider Networks

DDoS mitigation leader advises CSPs to use deep learning-based attack detection

SAN FRANCISCO--(BUSINESS WIRE)--A new cyber threat, coined a “Black Storm” attack, could potentially wreak havoc on communications service provider (CSP) networks, according to new distributed denial-of-service (DDoS) research from Nexusguard: A New Threat to CSP Networks – The Impending “Black Storm.” While DDoS amplification attacks rely on DNS servers or other similar open services to interrupt connectivity, a Black Storm attack can leverage any device connected to the Internet. Researchers caution that the volume from one Black Storm attack could terminate medium to large-sized enterprises in a clean sweep and severely cripple a large-scale CSP network.

According to the firm’s analysis, hackers can achieve Black Storm attacks more easily than amplification attacks, which could quickly dominate the cyberworld. Black Storm attacks could be manifested by hackers employing a BlackNurse attack in a reflective manner (rBlackNurse attacks). By generating spoofed UDP requests to CSP devices’ closed UDP ports—a reflection of the ping replies returned to the CSP network ping sources in BlackNurse attacks—the devices respond with destination port unreachable responses. As more devices continue to respond to the spoofed IP source, the volume of responses completely overwhelms the target CSP network and creates the Black Storm attack. Nexusguard advises CSPs to perform regular vulnerability scanning, apply access control to routers and use deep learning-based detection methods. Deep learning approaches can help CSPs analyze huge amounts of data quickly and accurately while overcoming the inefficiencies inherent in threshold or signature-based methods.

“The potential risk from impending Black Storm attacks could obliterate individual enterprises and have devastating consequences for communications service providers and completely saturate their networks,” warned Juniman Kasman, chief technology officer for Nexusguard. “Networks targeted by these attacks need to apply deep learning intelligence in order to analyze traffic patterns and identify Black Storm attacks well before they can be exploited.”

The pandemic witnessed a massive increase in reliance on connectivity as well as a 341% increase in DDoS attacks in 2020, which strained CSPs and internet service providers (ISPs) that provide the networks for the new levels of remote work. Nexusguard researchers caution that CSPs and other organizations that rely on standard DDoS mitigation solutions designed to detect and mitigate incoming traffic risk missing internal traffic issues, which can arise from rBlackNurse traffic proliferating internally within CSP networks.

To help CSPs quickly launch anti-DDoS capabilities to protect customers, Nexusguard launched the TAP100 Program, which removes the hardware barriers associated with typical anti-DDoS service ramp-up, allowing CSP product teams and C-suites to capture new revenue opportunities and ensure superior customer service.

Nexusguard’s DDoS threat research reports on attack data from botnet scanning, honeypots, CSPs and traffic moving between attackers and their targets to help companies identify vulnerabilities and stay informed about global cyber security trends.

Read Nexusguard’s full Black Storm white paper for more details.

About Nexusguard

Founded in 2008, Nexusguard is a leading cloud-based distributed denial of service (DDoS) security solution provider fighting malicious internet attacks. Nexusguard ensures uninterrupted internet service, visibility, optimization and performance. Nexusguard is focused on developing and providing the best cybersecurity solution for every client across a range of industries with specific business and technical requirements. Nexusguard also enables communications service providers to deliver DDoS protection solution as a service. Nexusguard delivers on its promise to provide you with peace of mind by countering threats and ensuring maximum uptime. Visit www.nexusguard.com for more information.

Contacts

Justine Boucher
Metis Communications
+1 617-863-0294
nexusguard@metiscomm.com

Benjamin Yip
Nexusguard
Head of marketing
+1 415-299-8550
Benjamin.Yip@Nexusguard.com

Nexusguard


Release Summary
A new cyber threat, coined a “Black Storm” attack, could potentially wreak havoc on CSP networks, according to Nexusguard.
Release Versions

Contacts

Justine Boucher
Metis Communications
+1 617-863-0294
nexusguard@metiscomm.com

Benjamin Yip
Nexusguard
Head of marketing
+1 415-299-8550
Benjamin.Yip@Nexusguard.com

More News From Nexusguard

Nexusguard Research Reveals Worldwide Distributed Denial of Service Attacks More Than Doubled in 2022

SAN FRANCISCO--(BUSINESS WIRE)--Nexusguard's new DDoS Statistical Report for 2022 reveals worldwide distributed denial of service (DDoS) attacks more than doubled in 2022 over 2021....

Nexusguard Research Shows Total Number of DDoS Attacks Increased during First Half of 2022 While Maximum Attack Size Decreased Compared to Second Half of 2021

SAN FRANCISCO--(BUSINESS WIRE)--In the first half of 2022, the amount of DDoS (distributed denial of service) attacks increased by 75.6% compared to the second half of 2021, according to new Nexusguard research revealed in the company’s DDoS Statistical Report for 1HY 2022. While the total number of attacks did grow, the average (0.59 Gbps) and maximum (232.0 Gbps) attack sizes each decreased by 56% and 66.8%, respectively, during the same period. Notably, application attacks increased a whoppi...

Total Number of DDoS Attacks Fell 13% in 2021 over 2020, but Still Far Above Pre-Pandemic Levels, According to Nexusguard

SAN FRANCISCO--(BUSINESS WIRE)--The number of DDoS attacks fell 13% in 2021 over 2020, according to Nexusguard researchers for the DDoS Statistical Report for 2021...
Back to Newsroom