{"id":17917,"date":"2021-10-05T02:00:00","date_gmt":"2021-10-05T02:00:00","guid":{"rendered":"https:\/\/eodishasamachar.com\/en\/2021\/10\/05\/nexusguard-research-uncovers-new-black-storm-attack-threat-to-communications-service-provider-networks\/"},"modified":"2021-10-05T02:00:00","modified_gmt":"2021-10-05T02:00:00","slug":"nexusguard-research-uncovers-new-black-storm-attack-threat-to-communications-service-provider-networks","status":"publish","type":"post","link":"https:\/\/eodishasamachar.com\/en\/2021\/10\/05\/nexusguard-research-uncovers-new-black-storm-attack-threat-to-communications-service-provider-networks\/","title":{"rendered":"Nexusguard Research Uncovers New &#8220;Black Storm&#8221; Attack Threat to Communications Service Provider Networks"},"content":{"rendered":"<p> \n<\/p>\n<div>\n<p>SINGAPORE &#8211;\u00a0<a href=\"https:\/\/www.media-outreach.com\/\">Media&#13;<br \/>\nOutReach<\/a>\u00a0&#8211; 5 October 2021 &#8211;\u00a0A new cyber threat, coined a &#8220;Black Storm&#8221; attack, could potentially&#13;<br \/>\nwreak havoc on communications service provider (CSP) networks, according to new&#13;<br \/>\ndistributed denial-of-service (DDoS) research from <a href=\"https:\/\/www.nexusguard.com\/\">Nexusguard<\/a>:&#13;<br \/>\n<sdt sdttag=\"goog_rdk_0\" id=\"1507938682\"\/><a href=\"https:\/\/blog.nexusguard.com\/white-paper\/a-new-threat-to-csp-networks-the-impending-black-storm\">A&#13;<br \/>\nNew Threat to CSP Networks \u2013 The Impending &#8220;Black Storm.&#8221;<\/a> While DDoS&#13;<br \/>\namplification attacks rely on DNS servers or other similar open services to&#13;<br \/>\ninterrupt connectivity, a Black Storm attack can leverage any device connected&#13;<br \/>\nto the Internet. Researchers caution that the volume from one Black Storm&#13;<br \/>\nattack could terminate medium to large-sized enterprises in a clean sweep and&#13;<br \/>\nseverely cripple a large-scale CSP network.<\/p>\n<p style=\"text-align: center\"><img src=\"https:\/\/images.media-outreach.com\/Thumb\/500x0\/182876\/Nexus.jpg#image-182876\" width=\"500\"\/><\/p>\n<p>\u00a0<\/p>\n<p>According to the firm&#8217;s analysis, hackers can&#13;<br \/>\nachieve Black Storm attacks more easily than amplification attacks, which could&#13;<br \/>\nquickly dominate the cyberworld. Black Storm attacks could be manifested by&#13;<br \/>\nhackers employing a BlackNurse attack in a reflective manner (rBlackNurse&#13;<br \/>\nattacks). <sdt sdttag=\"goog_rdk_5\" id=\"-2089837416\"\/>By generating&#13;<br \/>\nspoofed UDP requests to CSP devices&#8217; closed UDP ports\u2014a reflection of the ping&#13;<br \/>\nreplies returned t<sdt sdttag=\"goog_rdk_6\" id=\"-1032031839\"\/>o the CSP&#13;<br \/>\nnetwork ping sources in BlackNurse attacks\u2014the devices respond with destination&#13;<br \/>\nport unreachable responses. As more devices continue to respond to the spoofed&#13;<br \/>\nIP source, the volume of responses completely overwhelms the target CSP network&#13;<br \/>\nand creates the Black Storm attack. Nexusguard advises CSPs<sdt showingplchdr=\"t\" sdttag=\"goog_rdk_8\" id=\"-1004195840\">\u00a0\u00a0\u00a0\u00a0 <\/sdt>to perform regular vulnerability&#13;<br \/>\nscanning, apply access control to routers and use deep learning-based detection&#13;<br \/>\nmethods. Deep learning approaches can help CSPs analyze huge amounts of data&#13;<br \/>\nquickly and accurately while overcoming the inefficiencies inherent in&#13;<br \/>\nthreshold or signature-based methods.<\/p>\n<p>\u00a0<\/p>\n<p>&#8220;The potential risk from impending Black Storm&#13;<br \/>\nattacks could obliterate individual enterprises and have devastating&#13;<br \/>\nconsequences for communications service providers and completely saturate their&#13;<br \/>\nnetworks,&#8221; warned Juniman Kasman, chief technology officer for Nexusguard.&#13;<br \/>\n&#8220;Networks targeted by these attacks need to apply deep learning <sdt sdttag=\"goog_rdk_9\" id=\"-825811775\"\/>intelligence in order to analyze&#13;<br \/>\ntraffic patterns and identify Black Storm attacks well before they can be&#13;<br \/>\nexploited.&#8221;<\/p>\n<p>\u00a0<\/p>\n<p>The pandemic witnessed a massive increase in&#13;<br \/>\nreliance on connectivity as well as a <a href=\"https:\/\/blog.nexusguard.com\/threat-report\/annual-threat-report-2020\">341% increase in DDoS attacks in 2020<\/a>, which&#13;<br \/>\nstrained CSPs and internet service providers (ISPs) that provide the networks&#13;<br \/>\nfor the new levels of remote work. Nexusguard researchers caution that CSPs and&#13;<br \/>\nother organizations that rely on standard DDoS mitigation solutions designed to&#13;<br \/>\ndetect and mitigate incoming traffic risk missing internal traffic issues,&#13;<br \/>\nwhich can arise from rBlackNurse traffic proliferating internally within CSP&#13;<br \/>\nnetworks. <\/p>\n<p>\u00a0<\/p>\n<p>To help CSPs quickly launch anti-DDoS&#13;<br \/>\ncapabilities to protect customers, Nexusguard launched the <a href=\"https:\/\/www.nexusguard.com\/tap100\">TAP100&#13;<br \/>\nProgram<\/a>, which removes the hardware barriers associated with typical&#13;<br \/>\nanti-DDoS service ramp-up, allowing CSP product teams and C-suites to capture&#13;<br \/>\nnew revenue opportunities and ensure superior customer service.<\/p>\n<p>\u00a0<\/p>\n<p>Nexusguard&#8217;s DDoS threat research reports on&#13;<br \/>\nattack data from botnet scanning, honeypots, CSPs and traffic moving between&#13;<br \/>\nattackers and their targets to help companies identify vulnerabilities and stay&#13;<br \/>\ninformed about global cyber security trends.<\/p>\n<p>\u00a0<\/p>\n<p>Read <sdt sdttag=\"goog_rdk_11\" id=\"1406497684\"\/><a href=\"https:\/\/blog.nexusguard.com\/white-paper\/a-new-threat-to-csp-networks-the-impending-black-storm\"><sdt sdttag=\"goog_rdk_12\" id=\"1555892952\"\/>Nexusguard&#8217;s full Black Storm&#13;<br \/>\nwhite paper<\/a> for more details.<\/p>\n<p>\u00a0<\/p>\n<\/p><\/div>\n\n<br \/><a href=\"https:\/\/www.media-outreach.com\/news\/2021-10-05\/97385\/nexusguard-research-uncovers-new-black-storm-attack-threat-to-communications-service-provider-networks\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>SINGAPORE &#8211;\u00a0Media&#13; OutReach\u00a0&#8211; 5 October 2021 &#8211;\u00a0A new cyber threat, coined a &#8220;Black Storm&#8221; attack, could potentially&#13; wreak havoc on communications service provider (CSP) networks, according to new&#13; distributed denial-of-service (DDoS) research from Nexusguard:&#13; A&#13; New Threat to CSP Networks \u2013 The Impending &#8220;Black Storm.&#8221; While DDoS&#13; amplification attacks rely on DNS servers or other &hellip;<\/p>\n","protected":false},"author":1,"featured_media":17918,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[60],"tags":[],"_links":{"self":[{"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/posts\/17917"}],"collection":[{"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/comments?post=17917"}],"version-history":[{"count":0,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/posts\/17917\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/media\/17918"}],"wp:attachment":[{"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/media?parent=17917"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/categories?post=17917"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/eodishasamachar.com\/en\/wp-json\/wp\/v2\/tags?post=17917"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}