NETSCOUT Continues to Innovate Its Arbor DDoS Protection With AI/ML to Reduce Cybersecurity and Business Risks
NETSCOUT SYSTEMS (NASDAQ: NTCT) has enhanced its Arbor® Threat Mitigation System (TMS) with AI/ML functionality to better detect and block malicious traffic. DDoS attacks have surged by 55% over the past four years, necessitating advanced AI/ML-enabled solutions. NETSCOUT’s hybrid AI/ML strategy combines cloud-scale analysis with supervised AI/ML in software solutions, enabling automated protection from threats. The company analyzes data from 550 Tbps of Internet traffic, providing a comprehensive threat overview. The ATLAS Intelligence Feed, updated multiple times daily, offers insights into active DDoS campaigns, source IP addresses, and novel attack vectors. Enhanced Geo-IP functionality enables quicker identification and blocking of malicious traffic. The latest release also features AI/ML-powered source host misuse detection, aiding in the identification and blocking of outbound DDoS attacks. Service providers benefit from improved infrastructure protection, reduced downtime costs, and new revenue opportunities. NETSCOUT’s solutions aim to minimize cybersecurity and business risks in an increasingly threat-laden landscape.
NETSCOUT SYSTEMS (NASDAQ: NTCT) ha potenziato il suo sistema di mitigazione delle minacce Arbor® (TMS) con funzionalità di AI/ML per migliorare il rilevamento e il blocco del traffico malevolo. Gli attacchi DDoS sono aumentati del 55% negli ultimi quattro anni, rendendo necessarie soluzioni avanzate basate su AI/ML. La strategia ibrida di AI/ML di NETSCOUT combina analisi su scala cloud con AI/ML supervisionata in soluzioni software, consentendo una protezione automatizzata dalle minacce. L'azienda analizza dati provenienti da 550 Tbps di traffico Internet, fornendo una panoramica completa delle minacce. Il feed di intelligence ATLAS, aggiornato più volte al giorno, offre approfondimenti sulle campagne DDoS attive, sugli indirizzi IP sorgente e su nuovi vettori di attacco. La funzionalità Geo-IP migliorata consente un'identificazione e un blocco più rapidi del traffico malevolo. L'ultima versione include anche il rilevamento dell'abuso di host sorgente potenziato da AI/ML, che aiuta nell'identificazione e nel blocco degli attacchi DDoS outbound. I fornitori di servizi beneficiano di una protezione infrastrutturale migliorata, costi di inattività ridotti e nuove opportunità di guadagno. Le soluzioni di NETSCOUT mirano a ridurre i rischi informatici e aziendali in un panorama sempre più minaccioso.
NETSCOUT SYSTEMS (NASDAQ: NTCT) ha mejorado su sistema de mitigación de amenazas Arbor® (TMS) con funcionalidades de IA/ML para detectar y bloquear mejor el tráfico malicioso. Los ataques DDoS han aumentado un 55% en los últimos cuatro años, lo que hace necesario contar con soluciones avanzadas habilitadas por IA/ML. La estrategia híbrida de IA/ML de NETSCOUT combina análisis a escala en la nube con IA/ML supervisada en soluciones de software, permitiendo una protección automatizada contra amenazas. La empresa analiza datos de 550 Tbps de tráfico de Internet, proporcionando una visión integral de las amenazas. El feed de inteligencia ATLAS, actualizado varias veces al día, ofrece información sobre las campañas DDoS activas, direcciones IP de origen y nuevos vectores de ataque. La funcionalidad Geo-IP mejorada permite una identificación y un bloqueo más rápidos del tráfico malicioso. La última versión también cuenta con detección de abuso de host de origen impulsada por IA/ML, ayudando en la identificación y el bloqueo de ataques DDoS salientes. Los proveedores de servicios se benefician de una mejor protección de infraestructura, costos de inactividad reducidos y nuevas oportunidades de ingresos. Las soluciones de NETSCOUT buscan minimizar los riesgos cibernéticos y empresariales en un panorama cada vez más amenazante.
NETSCOUT SYSTEMS (NASDAQ: NTCT)는 악성 트래픽을 더 잘 탐지하고 차단하기 위해 AI/ML 기능으로 Arbor® 위협 완화 시스템(TMS)을 강화했습니다. DDoS 공격은 지난 4년 동안 55% 증가했으며, 이는 고급 AI/ML 기반 솔루션의 필요성을 나타냅니다. NETSCOUT의 하이브리드 AI/ML 전략은 클라우드 규모의 분석과 소프트웨어 솔루션의 감독된 AI/ML을 결합하여 위협으로부터의 자동화된 보호를 가능하게 합니다. 이 회사는 550 Tbps의 인터넷 트래픽 데이터를 분석하여 포괄적인 위협 개요를 제공합니다. 매일 여러 번 업데이트되는 ATLAS 인텔리전스 피드는 활성 DDoS 캠페인, 출처 IP 주소 및 새로운 공격 벡터에 대한 통찰력을 제공합니다. 향상된 Geo-IP 기능은 악성 트래픽의 더 빠른 식별 및 차단을 가능하게 합니다. 최신 버전은 또한 AI/ML 기반의 출처 호스트 남용 탐지를 특징으로 하여 아웃바운드 DDoS 공격의 식별 및 차단을 지원합니다. 서비스 제공업체는 개선된 인프라 보호, 다운타임 비용 절감 및 새로운 수익 기회를 얻습니다. NETSCOUT의 솔루션은 점점 더 위협이 가득한 환경에서 사이버 보안 및 비즈니스 위험을 최소화하는 것을 목표로 합니다.
NETSCOUT SYSTEMS (NASDAQ: NTCT) a amélioré son système de mitigation des menaces Arbor® (TMS) avec des fonctionnalités d'IA/ML pour mieux détecter et bloquer le trafic malveillant. Les attaques DDoS ont augmenté de 55 % au cours des quatre dernières années, rendant nécessaires des solutions avancées basées sur l'IA/ML. La stratégie hybride d'IA/ML de NETSCOUT combine une analyse à l'échelle du cloud avec de l'IA/ML supervisée dans des solutions logicielles, permettant une protection automatisée contre les menaces. L'entreprise analyse des données provenant de 550 Tbps de trafic Internet, offrant un aperçu complet des menaces. Le flux d'intelligence ATLAS, mis à jour plusieurs fois par jour, fournit des informations sur les campagnes DDoS actives, les adresses IP sources et de nouveaux vecteurs d'attaque. La fonctionnalité Geo-IP améliorée permet une identification et un blocage plus rapides du trafic malveillant. La dernière version dispose également d'une détection des abus d'hôtes sources alimentée par l'IA/ML, aidant à l'identification et au blocage des attaques DDoS sortantes. Les fournisseurs de services bénéficient d'une meilleure protection de l'infrastructure, de coûts d'interruption réduits et de nouvelles opportunités de revenus. Les solutions de NETSCOUT visent à minimiser les risques de cybersécurité et d'entreprise dans un paysage de plus en plus menaçant.
NETSCOUT SYSTEMS (NASDAQ: NTCT) hat sein Arbor® Threat Mitigation System (TMS) mit KI/ML-Funktionalitäten verbessert, um bösartigen Datenverkehr besser zu erkennen und zu blockieren. DDoS-Angriffe sind in den letzten vier Jahren um 55 % gestiegen, was fortschrittliche KI/ML-gestützte Lösungen erforderlich macht. NETSCOUTs hybride KI/ML-Strategie kombiniert Cloud-Analyse mit überwachten KI/ML in Softwarelösungen und ermöglicht automatisierten Schutz vor Bedrohungen. Das Unternehmen analysiert Daten aus 550 Tbps Internetverkehr und bietet einen umfassenden Bedrohungsüberblick. Der ATLAS Intelligence Feed, der mehrmals täglich aktualisiert wird, bietet Einblicke in aktive DDoS-Kampagnen, Quell-IP-Adressen und neue Angriffsvektoren. Die verbesserte Geo-IP-Funktionalität ermöglicht eine schnellere Identifizierung und Blockierung von bösartigem Datenverkehr. Die neueste Version bietet auch KI/ML-gestützte Erkennung von Missbrauch von Quell-Hosts, die bei der Identifizierung und Blockierung von ausgehenden DDoS-Angriffen hilft. Dienstanbieter profitieren von verbesserter Infrastruktur-Schutz, reduzierten Ausfallkosten und neuen Einnahmequellen. Die Lösungen von NETSCOUT zielen darauf ab, Cybersecurity- und Geschäftsrisiken in einer zunehmend bedrohlichen Landschaft zu minimieren.
- Enhanced AI/ML functionality for better threat detection and blocking.
- Analysis of 550 Tbps of Internet traffic for comprehensive threat insights.
- ATLAS Intelligence Feed updated multiple times daily.
- Enhanced Geo-IP functionality for faster threat identification.
- AI/ML-powered source host misuse detection.
- 55% increase in DDoS attacks over the last four years.
Insights
NETSCOUT's enhancement of its Arbor Threat Mitigation System with advanced AI/ML capabilities represents a strategic product evolution that merits investor attention in the rapidly evolving cybersecurity landscape. The timing is particularly significant as DDoS attacks have surged 55% over the last four years, creating both challenges and market opportunities.
What sets this announcement apart is NETSCOUT's differentiated approach to AI implementation. Rather than simply adding AI as a marketing buzzword, they've developed a hybrid architecture that leverages cloud-scale analysis of an impressive 550 Tbps of Internet traffic—approximately half of all global Internet traffic. This massive data collection capability provides NETSCOUT with a significant competitive advantage in threat intelligence, allowing them to identify attack patterns that competitors with smaller data sets might miss.
The enhanced ATLAS Intelligence Feed now includes tracking of over 65 known DDoS threat actors, including high-profile groups like NoName057 and RipperSec. This capability is particularly valuable for enterprises and service providers dealing with politically motivated attacks that have increased amid ongoing geopolitical tensions. The addition of improved Geo-IP functionality enables more granular traffic filtering—a critical capability as attack sources become more geographically distributed.
For NETSCOUT investors, this product enhancement aligns with industry spending trends. Enterprise security budgets are increasingly prioritizing solutions that leverage AI to reduce human intervention requirements amid the persistent cybersecurity talent shortage. The new source host misuse detection capability addresses a growing pain point for network operators dealing with compromised IoT devices within their networks.
The endorsement from Arelion (formerly Telia Carrier)—one of the world's largest backbone network providers—adds significant credibility to NETSCOUT's solution. Such partnerships with tier-1 service providers typically translate to stable, recurring revenue streams that investors value highly.
While this announcement doesn't include specific financial projections, it strengthens NETSCOUT's position in the DDoS protection market, which is projected to grow at a CAGR of approximately 13.1% through 2028. For a company with a $1.69B market cap, maintaining leadership in this high-growth segment is important for valuation expansion, particularly as the company works to offset challenges in its legacy network performance monitoring business.
The focus on enabling service providers to develop new revenue-generating security services is particularly noteworthy, as it positions NETSCOUT to benefit from the ongoing shift toward security-as-a-service models that generate predictable subscription revenue—a model that typically commands higher valuation multiples than traditional hardware/software sales.
AI/ML Powered Intelligence Feed and Adaptive DDoS Mitigation Essential for Defeating Rapidly Evolving DDoS Attacks
Distributed Denial of Service (DDoS) attacks targeting critical IT infrastructure and services have increased by
“With AI-driven attacks, ransomware, and nation-state threats impacting corporate governance, financial performance, and customer trust, corporate boards expect their IT teams to be proactive in adapting to emerging threats like DDoS,” said Chris Steffen, Vice President of Research – Information Security, Enterprise Management Associates. “Implementing solutions that can adapt to threats helps minimize that risk.”
NETSCOUT utilizes a hybrid AI/ML strategy that combines AI/ML running at scale in the cloud, with supervision, to analyze data collected from an unprecedented 550 Tbps of Internet traffic (almost half of all Internet traffic), along with AI/ML running in our software solutions to enable automated protection from these attacks. This provides a ‘best of both worlds’ approach – the computational scale of the cloud allows for large-scale analysis of threat data with supervision to ensure accuracy while AI/ML running in our software solutions enables them to leverage that pre-analyzed intelligence to make fast, accurate, automated decisions about what to detect and block.
The company’s cloud-based AI/ML drives the creation of the ATLAS Intelligence Feed, which delivers unique capabilities in its Adaptive DDoS Protection solutions, arming them with the latest DDoS attack intelligence. The continuous analysis, which is updated multiple times per day, provides insight into the source IP addresses of devices actively conducting DDoS attacks on the internet, novel attack vectors, DDoS attack targets, and other intelligence. This enables Adaptive DDoS Protection to quickly and accurately detect even small direct-path attacks from sampled flow data and send the traffic to TMS for automated blocking.
The latest AI/ML-derived ATLAS Intelligence Feed iteration has been augmented with enhanced Geo-IP location functionality that maps IP addresses to geographic locations, enabling faster and more precise identification and blocking of malicious traffic. In addition, the ATLAS Intelligence Feed now includes NETSCOUT’s ATLAS tracking of active DDoS campaigns, enabling Adaptive DDoS Protection to automatically detect and block attacks from over 65 known DDoS threat actors carrying out active attack campaigns against a range of targets, including NoName057 and RipperSec.
AI/ML technology has also been adopted as part of the Adaptive DDoS Protection solution. New in the latest release is AI/ML-powered source host misuse detection, which enables network operators to track misbehaving subscribers, infected hosts, compromised IoT devices, and other internal attack sources. This new capability makes it easier to detect and block outbound DDoS attacks that can impact service and infrastructure performance and availability as edge connectivity speeds increase. New TMS Source Mitigations enable network operators to redirect and surgically protect against threat activity from specific sources that may be targeting the entire network without requiring fully inline solutions on all network traffic.
Service Provider Benefits
With updates to NETSCOUT’s Adaptive DDoS Protection solution, service providers can better protect their critical infrastructures and the services they provide to their customers. Other key advantages include enhanced availability, reduced downtime costs, less aggravation, and new revenue-generating opportunities.
“With more sophisticated and frequent DDoS attacks, the risks have never been greater,” said Scott Nichols, Chief Commercial Officer at Arelion. “Through our partnership with NETSCOUT, we’re able to deliver industry-leading Adaptive DDoS protection to ensure the best experience possible for our customers.”
Visit our website to learn more about NETSCOUT’s Arbor Adaptive DDoS Protection for Service Providers.
About NETSCOUT
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) protects the connected world from cyberattacks and performance and availability disruptions through its unique visibility platform and solutions powered by its pioneering deep packet inspection at scale technology. NETSCOUT serves the world’s largest enterprises, service providers, and public sector organizations. Learn more at www.netscout.com or follow @NETSCOUT on LinkedIn, X, or Facebook.
©2025 NETSCOUT SYSTEMS, INC. All rights reserved. Third-party trademarks mentioned are the property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20250225929876/en/
Editorial Contacts:
Chris Lucas
NETSCOUT Systems, Inc.
+1 978 614 4124
chris.lucas@netscout.com
Chris Shattuck
Finn Partners for NETSCOUT
+1 404 502 6755
NETSCOUT-US@FinnPartners.com
Source: NETSCOUT SYSTEMS, INC
FAQ
What is the impact of NETSCOUT's AI/ML enhancements on NTCT?
How much has the frequency of DDoS attacks increased?
What is the ATLAS Intelligence Feed?
How does NETSCOUT's Geo-IP functionality benefit NTCT?