© 2019 Nexusguard Limited – Confidential & Proprietary
360° DDoS Protection for SMEs
Donny Chong
Director, Product and Marketing
31 May, 2019
© 2019 Nexusguard Limited – Confidential & Proprietary
The Forrester Wave™
DDoS Mitigation Solutions 2017
Best Security-As-A-Service
Information Management Awards
2018
Best DDoS Protection
2018 #2
Years experience
fighting DDoS
Tbps
Scrubbing Capacity
Security
Operation
Center
Global
DDoS Scrubbing Centers
2Tbps 24x71510 +
Global DDoS Mitigation
Entrepreneurial Company of the
Year Award 2016
Authority in DDoS Protection
© 2019 Nexusguard Limited – Confidential & Proprietary
Nexusguard PoP
Nexusguard Registered Partner PoP
Global
Scrubbing
Network
15 PoPs
© 2019 Nexusguard Limited – Confidential & Proprietary
Agenda
● DDoS Attack Landscape
● The Age of IOT – What it means for you?
● 360 DDoS Protection Solution
© 2019 Nexusguard Limited – Confidential & Proprietary
Global DDoS Attack Landscape
© 2019 Nexusguard Limited – Confidential & Proprietary
What a DDoS attack looks like
© 2019 Nexusguard Limited – Confidential & Proprietary
Size of Attacks
2008 2018
1Gbps ~300Gbps
© 2019 Nexusguard Limited – Confidential & Proprietary
Duration Of Attacks
2008 2018
6 - 8 Hours ~19 Days
© 2019 Nexusguard Limited – Confidential & Proprietary
Sophistication Of Attacks
2008 2018
1~2 Vectors >10 Vectors
© 2019 Nexusguard Limited – Confidential & Proprietary
Application attack Trend (SMEs)
2018 2019
59.76% HTTP
40.24% HTTPS
81.18% HTTP
18.89% HTTPS
49.08% HTTP
50.92% HTTPS
2017
© 2019 Nexusguard Limited – Confidential & Proprietary
3 out of 5 DDoS Attack targeted Enterprise
2017
13,739 DDoS attacks
2018
11,389 DDoS attacks
© 2019 Nexusguard Limited – Confidential & Proprietary
Q1 Perpetrators tapped into the attack with a huge amplification factor:
Memcached attacks (51,000X) in Q1 2018
Q2 IoT-botnet generated attacks occasionally skyrocketed. It was caused by
Satori evolving from Mirai to exploit zero-day vulnerabilities;
Q3, Q4 Perpetrators employed a newly-adopted tactic of Amplification Attack,
referred to as a "Bit-and-Piece” Attack, a hard-to-detect attack stealthily
converging at the distinction by evading detection.
2018 Attack Trends
Total 37,728 attacks (Successfully detected and mitigated by Nexusguard)
Open Public DNS
Servers
Open Public DNS
Servers
Open Public DNS
Servers
Open Public DNS
Servers
Victim
Bot
Open Public DNS
Servers
Amplified attack traffic
Attacker sending Command to Bot
Small DNS request and spoofed source IP to
Victim
BotBot
51,000 times!
© 2019 Nexusguard Limited – Confidential & Proprietary
The Age of IoT
The Botnet Outbreak
© 2019 Nexusguard Limited – Confidential & Proprietary
Outbreak of IoT Botnet
Since the release of its source code in August of 2016, the number of IoT botnets
greatly grew. The outbreak of the Mirai botnet was concurrent with the rise in the
number and size of attacks in 2016 Q4 was concurrent with the outbreak of the
Mirai like botnet. 2018 Q2, the dramatic rise in IoT botnet activity coincided with
Satori malware exploits. Satori, a variant of the notorious Mirai malware, is
designed to generate network-layer DDoS attacks by exploiting zero-day
vulnerabilities in certain types of home routers. Today…
© 2019 Nexusguard Limited – Confidential & Proprietary
News of IoT Botnet
© 2019 Nexusguard Limited – Confidential & Proprietary
Type of Bots (by Percentage)
Before 2016 2019
> 90% is
Computers and
Servers
> 60% is
Mobile Devices
© 2019 Nexusguard Limited – Confidential & Proprietary
Attack sources of DDoS attack Q1 2019
Attack Sources(Application Attack) Percentage
Mobile
Devices
Android (Samsung, Huawei, etc.) 39.00%
IOS (iPhone, iPad and iPod) 21.34%
Others (e.g. BlackBerry) 0.002%
Computers
and servers
Windows 24.06%
Macintosh 1.26%
Others OS’s 6.73%
Others Playstation, Smart TV, Smart Hub, etc. 7.61%
• Capture from REAL application
attack daily. Counting base on
application attack’s source IPs.
(Application attack can’t use spoofed
IP)
• Over 90% attack come from
computer before 2017. Over 60% of
attack come from Mobile Devices,
now.
• Problem not only come from poor
security devices, poor security
awareness also is the root cause.
© 2019 Nexusguard Limited – Confidential & Proprietary
360° DDoS Protection
from a Partner You Can Trust
© 2019 Nexusguard Limited – Confidential & Proprietary
Our Offering - 360° DDoS Protection
Our cloud-based 3-pillar Cybersecurity Platform
Application Protection, Origin Protection, DNS
Protection provides comprehensive protection on
websites, applications, backend infrastructure and DNS
servers, from the latest threats.
© 2019 Nexusguard Limited – Confidential & Proprietary
Our Difference
Our own R&D Our own Technology Our own Infrastructure Our Products
- Attack Study Lab
- Product Development
- Real time Data & Report
- Automated Intelligence
- Multi layered Mitigation
- Global + Local Scrubbing
- Nexusguard Technology
- Dandelion Network
- Application Protection
- Origin Protection
- DNS Protection
- Infra Protect
Highly customizable solutions with white glove services
To secure access and performance for up-time protection,
in compliance with PCI DSS, ISO 27001 and Data Sovereignty
Premium Sector
High Demand Organizations
TAP (Transformational Alliance Partner) Program
Innovation in technology and solutions for entire supply chain
Service Provider Sector
Telco, Hosting, Data Center
Offerings from
Proprietary
Design
Strategies
based on
proprietary
Product design
Pure-play expert in DDoS mitigation since 2008;
Purpose built platforms to future-proof businesses across the entire performance value chain; End-to-end full service
© 2019 Nexusguard Limited – Confidential & Proprietary
Look forward to
Growing with Your Business
www.nexusguard.com

Netpluz DDoS Mitigation - Managed Cyber Security

  • 1.
    © 2019 NexusguardLimited – Confidential & Proprietary 360° DDoS Protection for SMEs Donny Chong Director, Product and Marketing 31 May, 2019
  • 2.
    © 2019 NexusguardLimited – Confidential & Proprietary The Forrester Wave™ DDoS Mitigation Solutions 2017 Best Security-As-A-Service Information Management Awards 2018 Best DDoS Protection 2018 #2 Years experience fighting DDoS Tbps Scrubbing Capacity Security Operation Center Global DDoS Scrubbing Centers 2Tbps 24x71510 + Global DDoS Mitigation Entrepreneurial Company of the Year Award 2016 Authority in DDoS Protection
  • 3.
    © 2019 NexusguardLimited – Confidential & Proprietary Nexusguard PoP Nexusguard Registered Partner PoP Global Scrubbing Network 15 PoPs
  • 4.
    © 2019 NexusguardLimited – Confidential & Proprietary Agenda ● DDoS Attack Landscape ● The Age of IOT – What it means for you? ● 360 DDoS Protection Solution
  • 5.
    © 2019 NexusguardLimited – Confidential & Proprietary Global DDoS Attack Landscape
  • 6.
    © 2019 NexusguardLimited – Confidential & Proprietary What a DDoS attack looks like
  • 7.
    © 2019 NexusguardLimited – Confidential & Proprietary Size of Attacks 2008 2018 1Gbps ~300Gbps
  • 8.
    © 2019 NexusguardLimited – Confidential & Proprietary Duration Of Attacks 2008 2018 6 - 8 Hours ~19 Days
  • 9.
    © 2019 NexusguardLimited – Confidential & Proprietary Sophistication Of Attacks 2008 2018 1~2 Vectors >10 Vectors
  • 10.
    © 2019 NexusguardLimited – Confidential & Proprietary Application attack Trend (SMEs) 2018 2019 59.76% HTTP 40.24% HTTPS 81.18% HTTP 18.89% HTTPS 49.08% HTTP 50.92% HTTPS 2017
  • 11.
    © 2019 NexusguardLimited – Confidential & Proprietary 3 out of 5 DDoS Attack targeted Enterprise 2017 13,739 DDoS attacks 2018 11,389 DDoS attacks
  • 12.
    © 2019 NexusguardLimited – Confidential & Proprietary Q1 Perpetrators tapped into the attack with a huge amplification factor: Memcached attacks (51,000X) in Q1 2018 Q2 IoT-botnet generated attacks occasionally skyrocketed. It was caused by Satori evolving from Mirai to exploit zero-day vulnerabilities; Q3, Q4 Perpetrators employed a newly-adopted tactic of Amplification Attack, referred to as a "Bit-and-Piece” Attack, a hard-to-detect attack stealthily converging at the distinction by evading detection. 2018 Attack Trends Total 37,728 attacks (Successfully detected and mitigated by Nexusguard)
  • 13.
    Open Public DNS Servers OpenPublic DNS Servers Open Public DNS Servers Open Public DNS Servers Victim Bot Open Public DNS Servers Amplified attack traffic Attacker sending Command to Bot Small DNS request and spoofed source IP to Victim BotBot 51,000 times!
  • 14.
    © 2019 NexusguardLimited – Confidential & Proprietary The Age of IoT The Botnet Outbreak
  • 15.
    © 2019 NexusguardLimited – Confidential & Proprietary Outbreak of IoT Botnet Since the release of its source code in August of 2016, the number of IoT botnets greatly grew. The outbreak of the Mirai botnet was concurrent with the rise in the number and size of attacks in 2016 Q4 was concurrent with the outbreak of the Mirai like botnet. 2018 Q2, the dramatic rise in IoT botnet activity coincided with Satori malware exploits. Satori, a variant of the notorious Mirai malware, is designed to generate network-layer DDoS attacks by exploiting zero-day vulnerabilities in certain types of home routers. Today…
  • 16.
    © 2019 NexusguardLimited – Confidential & Proprietary News of IoT Botnet
  • 17.
    © 2019 NexusguardLimited – Confidential & Proprietary Type of Bots (by Percentage) Before 2016 2019 > 90% is Computers and Servers > 60% is Mobile Devices
  • 18.
    © 2019 NexusguardLimited – Confidential & Proprietary Attack sources of DDoS attack Q1 2019 Attack Sources(Application Attack) Percentage Mobile Devices Android (Samsung, Huawei, etc.) 39.00% IOS (iPhone, iPad and iPod) 21.34% Others (e.g. BlackBerry) 0.002% Computers and servers Windows 24.06% Macintosh 1.26% Others OS’s 6.73% Others Playstation, Smart TV, Smart Hub, etc. 7.61% • Capture from REAL application attack daily. Counting base on application attack’s source IPs. (Application attack can’t use spoofed IP) • Over 90% attack come from computer before 2017. Over 60% of attack come from Mobile Devices, now. • Problem not only come from poor security devices, poor security awareness also is the root cause.
  • 19.
    © 2019 NexusguardLimited – Confidential & Proprietary 360° DDoS Protection from a Partner You Can Trust
  • 20.
    © 2019 NexusguardLimited – Confidential & Proprietary Our Offering - 360° DDoS Protection Our cloud-based 3-pillar Cybersecurity Platform Application Protection, Origin Protection, DNS Protection provides comprehensive protection on websites, applications, backend infrastructure and DNS servers, from the latest threats.
  • 21.
    © 2019 NexusguardLimited – Confidential & Proprietary Our Difference Our own R&D Our own Technology Our own Infrastructure Our Products - Attack Study Lab - Product Development - Real time Data & Report - Automated Intelligence - Multi layered Mitigation - Global + Local Scrubbing - Nexusguard Technology - Dandelion Network - Application Protection - Origin Protection - DNS Protection - Infra Protect Highly customizable solutions with white glove services To secure access and performance for up-time protection, in compliance with PCI DSS, ISO 27001 and Data Sovereignty Premium Sector High Demand Organizations TAP (Transformational Alliance Partner) Program Innovation in technology and solutions for entire supply chain Service Provider Sector Telco, Hosting, Data Center Offerings from Proprietary Design Strategies based on proprietary Product design Pure-play expert in DDoS mitigation since 2008; Purpose built platforms to future-proof businesses across the entire performance value chain; End-to-end full service
  • 22.
    © 2019 NexusguardLimited – Confidential & Proprietary Look forward to Growing with Your Business www.nexusguard.com