Europe, Middle East, and Africa
Flag of Iran (Islamic Republic of)

Iran (Islamic Republic of)

The DDoS threat landscape is constantly evolving, and to stay ahead of adversaries, ongoing monitoring and analysis are essential to detect how they are modifying their behavior and targets. NETSCOUT monitors the global threat landscape and drills into regional and country-level statistics to ensure that adversaries inform us of near-real-time trends. The country-level analytics featured on this page are automatically generated using our global threat analysis and collection platform, ATLAS, and provide a range of benchmarks for the specified time period, such as the top vectors used in DDoS attacks, top targeted industries, largest attack by bandwidth and throughput, most vectors used in an attack, and total attack frequency.

Max Multivector Attack

Max number of vectors seen in a single attack

10

Attack Vectors Used

1. CLDAP Amplification
2. MS SQL RS Amplification
3. NetBIOS Amplification
4. SNMP Amplification
5. SSDP Amplification
6. UDP
7. chargen Amplification
8. mDNS Amplification
9. rpcbind Amplification

Top Attack Vectors

Dn

DNS Amplification

Number of Attacks

20,466

Im

ICMP

Number of Attacks

1,082

Ds

DNS

Number of Attacks

432

Np

NTP Amplification

Number of Attacks

190

Tr

TCP RST

Number of Attacks

150

Top Four Industries Under Attack

The following table lists the top vertical industries under attack from January 2025 to June 2025 by number of attacks.

Rank Vertical Frequency Max Attack Max Impact Average Duration
1
Wireless Telecommunications Carriers (except Satellite)
27,646 107.17 Gbps 10.36 Mpps 8 Minutes
2
Computing Infrastructure Providers Data Processing Web Hosting and Related Services
15,620 145.66 Gbps 14.23 Mpps 7 Minutes
3
Full-Service Restaurants
94 66.24 Gbps 6.45 Mpps 5 Minutes
4
Electronics and Appliance Retailers
40 1.43 Gbps 0.14 Mpps 6 Minutes