United States of America
The DDoS threat landscape is constantly evolving, and to stay ahead of adversaries, ongoing monitoring and analysis are essential to detect how they are modifying their behavior and targets. NETSCOUT monitors the global threat landscape and drills into regional and country-level statistics to ensure that adversaries inform us of near-real-time trends. The country-level analytics featured on this page are automatically generated using our global threat analysis and collection platform, ATLAS, and provide a range of benchmarks for the specified time period, such as the top vectors used in DDoS attacks, top targeted industries, most vectors used in an attack, and total attack frequency.
Max Multivector Attack
Max number of vectors seen in a single attack
27
Attack Vectors Used
1. ARMS Amplification
2. CLDAP Amplification
3. DHCP Discovery Amplification
4. DNS
5. DNS Amplification
6. ICMP
7. Jenkins Amplification
8. L2TP Amplification
9. MS SQL RS Amplification
10. NTP Amplification
11. NetBIOS Amplification
12. RDP Amplification
13. SNMP Amplification
14. SSDP Amplification
15. TCP ACK
16. TCP RST
17. TCP SYN
18. TCP SYN/ACK Amplification
19. TCP null
20. UDP
21. WS-DD Amplification
22. chargen Amplification
23. mDNS Amplification
24. memcached Amplification
25. rpcbind Amplification
Top Attack Vectors
Ta
TCP ACK
Number of Attacks
246,815
Ds
DNS
Number of Attacks
167,694
Dn
DNS Amplification
Number of Attacks
117,855
Ts
TCP SYN
Number of Attacks
82,630
Im
ICMP
Number of Attacks
39,801
Top Nine Industries Under Attack
The following table lists the top vertical industries under attack from January 2026 to June 2026 by number of attacks.
| Rank | Vertical | Frequency | Average Duration |
|---|---|---|---|
| 1 |
|
420,726 | 43 Minutes |
| 2 |
|
216,197 | 44 Minutes |
| 3 |
|
128,888 | 30 Minutes |
| 4 |
|
97,534 | 83 Minutes |
| 5 |
|
34,649 | 83 Minutes |
| 6 |
|
25,315 | 9 Minutes |
| 7 |
|
18,552 | 269 Minutes |
| 8 |
|
14,518 | 191 Minutes |
| 9 |
|
8,366 | 35 Minutes |