Ukraine
The DDoS threat landscape is constantly evolving, and to stay ahead of adversaries, ongoing monitoring and analysis are essential to detect how they are modifying their behavior and targets. NETSCOUT monitors the global threat landscape and drills into regional and country-level statistics to ensure that adversaries inform us of near-real-time trends. The country-level analytics featured on this page are automatically generated using our global threat analysis and collection platform, ATLAS, and provide a range of benchmarks for the specified time period, such as the top vectors used in DDoS attacks, top targeted industries, most vectors used in an attack, and total attack frequency.
Max Multivector Attack
Max number of vectors seen in a single attack
20
Attack Vectors Used
1. DNS Amplification
2. ICMP
3. Jenkins Amplification
4. MS SQL RS Amplification
5. NTP Amplification
6. RDP Amplification
7. SNMP Amplification
8. SSDP Amplification
9. TCP ACK
10. TCP RST
11. TCP SYN
12. TCP SYN/ACK Amplification
13. UDP
14. VSE Amplification
15. WS-DD Amplification
16. chargen Amplification
17. mDNS Amplification
18. memcached Amplification
Top Attack Vectors
Im
ICMP
Number of Attacks
5,640
Ts
TCP SYN
Number of Attacks
4,430
Ta
TCP ACK
Number of Attacks
4,305
Ds
DNS
Number of Attacks
4,034
Dn
DNS Amplification
Number of Attacks
1,782
Top Ten Industries Under Attack
The following table lists the top vertical industries under attack from January 2026 to June 2026 by number of attacks.
| Rank | Vertical | Frequency | Average Duration |
|---|---|---|---|
| 1 |
|
1,643 | 14 Minutes |
| 2 |
|
1,067 | 98 Minutes |
| 3 |
|
153 | 455 Minutes |
| 4 |
|
146 | 23 Minutes |
| 5 |
|
60 | 12 Minutes |
| 6 |
|
53 | 147 Minutes |
| 7 |
|
51 | 12 Minutes |
| 8 |
|
50 | 7 Minutes |
| 9 |
|
31 | 29 Minutes |
| 10 |
|
28 | 26 Minutes |