Europe, Middle East, and Africa
Flag of Estonia

Estonia

The DDoS threat landscape is constantly evolving, and to stay ahead of adversaries, ongoing monitoring and analysis are essential to detect how they are modifying their behavior and targets. NETSCOUT monitors the global threat landscape and drills into regional and country-level statistics to ensure that adversaries inform us of near-real-time trends. The country-level analytics featured on this page are automatically generated using our global threat analysis and collection platform, ATLAS, and provide a range of benchmarks for the specified time period, such as the top vectors used in DDoS attacks, top targeted industries, most vectors used in an attack, and total attack frequency.

Max Multivector Attack

Max number of vectors seen in a single attack

11

Attack Vectors Used

1. DNS
2. DNS Amplification
3. ICMP
4. NetBIOS Amplification
5. TCP ACK
6. TCP RST
7. TCP SYN
8. TCP SYN/ACK Amplification
9. UDP

Top Attack Vectors

Dn

DNS Amplification

Number of Attacks

303

Ts

TCP SYN

Number of Attacks

185

Tk

TCP SYN/ACK Amplification

Number of Attacks

153

Ds

DNS

Number of Attacks

67

Ta

TCP ACK

Number of Attacks

42

Top Five Industries Under Attack

The following table lists the top vertical industries under attack from January 2026 to June 2026 by number of attacks.

Rank Vertical Frequency Average Duration
1
Wired Telecommunications Carriers
484 19 Minutes
2
Full-Service Restaurants
155 10 Minutes
3
Computing Infrastructure Providers Data Processing Web Hosting and Related Services
65 15 Minutes
4
Wireless Telecommunications Carriers (except Satellite)
51 26 Minutes
5
Commercial Banking
20 16 Minutes