Mexico
The DDoS threat landscape is constantly evolving, and to stay ahead of adversaries, ongoing monitoring and analysis are essential to detect how they are modifying their behavior and targets. NETSCOUT monitors the global threat landscape and drills into regional and country-level statistics to ensure that adversaries inform us of near-real-time trends. The country-level analytics featured on this page are automatically generated using our global threat analysis and collection platform, ATLAS, and provide a range of benchmarks for the specified time period, such as the top vectors used in DDoS attacks, top targeted industries, most vectors used in an attack, and total attack frequency.
Max Multivector Attack
Max number of vectors seen in a single attack
22
Attack Vectors Used
1. CLDAP Amplification
2. DNS
3. DNS Amplification
4. ICMP
5. MS SQL RS Amplification
6. NTP Amplification
7. NetBIOS Amplification
8. RIPv1 Amplification
9. SNMP Amplification
10. SSDP Amplification
11. STUN Amplification
12. TCP ACK
13. TCP RST
14. TCP SYN
15. TCP SYN/ACK Amplification
16. UDP
17. WS-DD Amplification
18. chargen Amplification
19. mDNS Amplification
20. memcached Amplification
21. rpcbind Amplification
Top Attack Vectors
Dn
DNS Amplification
Number of Attacks
7,333
Lt
L2TP Amplification
Number of Attacks
5,763
Ds
DNS
Number of Attacks
3,258
Tk
TCP SYN/ACK Amplification
Number of Attacks
2,299
Im
ICMP
Number of Attacks
2,210
Top Five Industries Under Attack
The following table lists the top vertical industries under attack from January 2026 to June 2026 by number of attacks.
| Rank | Vertical | Frequency | Average Duration |
|---|---|---|---|
| 1 |
|
9,267 | 371 Minutes |
| 2 |
|
8,060 | 40 Minutes |
| 3 |
|
7,439 | 183 Minutes |
| 4 |
|
1,328 | 342 Minutes |
| 5 |
|
160 | 249 Minutes |