Press

DDoS and Ransomware Attacks Reach Unprecedented Levels in the Middle East, According to Help AG’s State of the Market Report 2021

By Help AG

Over ten million Distributed Denial of Service (DDoS) attacks were recorded globally in 2020, including a 183% increase in the UAE alone, while ransomware attacks are on the rise, with the government, private, oil and gas, telecom and healthcare sectors particularly affected, according to the State of the Market Report 2021 by Help AG, the cybersecurity arm of Etisalat Digital.
The first of its kind to focus exclusively on digital security in the Middle East region, Help AG’s State of the Market Report 2021 delivers cybersecurity intelligence across a range of parameters, including the top threats over the course of 2020, the region’s biggest vulnerabilities, the kinds of attacks and attack vectors which are a cause for concern, the anatomy of some high-profile breaches, security investment patterns of organizations in the region, and where the market is headed in terms of technologies and evolution.
TOP THREATS FACED IN 2020
DDoS Attacks
For the first time in history, the number of DDoS attacks recorded exceeded 10 million in 2020, showing a dramatic increase of almost 1.6 million over the 2019 count of 8.5 million[1]. The UAE alone witnessed a 183% increase in DDoS attacks targeting government and private sector customers. The attacks are also increasing in scale, with the largest one observed in the UAE measured at 254.3 Gbps. This increase has made DDoS attacks by far the most prolific form of cybersecurity threats faced by organizations today. The government, private, oil and gas, telecom and healthcare sectors faced a particularly harsh onslaught, with repeated attacks targeting specific customers using varying attack patterns in particular segments over the course of 2020.
Ransomware
Ransomware attacks have also been on the rise, largely thanks to their high rates of success, which can be attributed to their relative simplicity and their significant, immediate impact on an affected business, as well as the fact that many organizations still end up paying the ransom, thus encouraging the threat actors to continue utilizing this attack method. In 2020, Help AG identified a common tactic employed by multiple threat actors, using DDoS attacks as a mechanism to distract security monitoring and response teams, before executing the ransomware attack. Help AG also identified a ransomware threat group leveraging built-in features of Windows 10 to initiate attacks.
Top Vulnerabilities
The year 2020 saw a significant rise in the number of vulnerabilities discovered as compared to the previous year, with a total of 18,353 identified as per the NIST National Vulnerability Database (NVD)[2], and a particular increase in critical and high severity vulnerabilities. Vulnerabilities that required no user interaction to exploit also increased. Government agencies were the most affected, followed by banking and finance, manufacturing, healthcare, education, and technology, with a significant rise in industrial control system (ICS) vulnerabilities.
VPN Attacks
2020 was the year of VPN attacks — no surprises here considering the move to a new normal that came with a distributed workforce globally. There was a major incident or new vulnerability identified in almost every single month of the year, highlighting the increasing need for Zero Trust Network Access (ZTNA) to become an industry standard for cybersecurity.
ANATOMY OF A CYBER BREACH
Decrypting a High-Profile Breach
Part of the report breaks down in detail one of the most notable, high-profile cybersecurity breaches which Help AG’s incident response team were called in to tackle. The threat was related to the China-linked threat actor Emissary Panda (APT27, Lucky Mouse), a noted cybercriminal organization linked to a number of widespread attacks.
Lessons Learned from the Trenches
The report shares a detailed overview of “Lessons Learned” from cyber-attacks which resulted in a compromise of an organization’s systems or assets, and the measures taken to respond to the attacks, which include an Incident Response Plan, Backups, Patching, and the protection of the organization’s Active Directory.
CYBERSECURITY TRENDS
Key Areas of Investment
Help AG has identified a number of areas which saw significant investment over the course of 2020. Security infrastructure such as next-gen firewall platforms, application protection solutions and DNS security solutions saw major investment, as did secure remote access systems including VPN, SASE, Proxy, email security, and insider threat monitoring, which collectively enjoyed a 300+% growth YoY. In addition, organizations invested heavily in managed cyber defense and strengthening the Security Operations Centre triad, specifically in areas that included SIEM solutions, network detection and response solutions, endpoint protection/detection and response solutions, and vulnerability management.
Uptake of New Technologies
Over the past year, Security Access Service Edge (SASE) and Secure Cloud Enablement have both seen increased uptake by organizations across all industry verticals. Looking ahead to the next 12 months, the report predicts that these technologies will see continued focus, alongside several other areas, including secure SD-WAN, email, application and endpoint security, micro-segmentation, Managed Security Services (MSS), and SMB security.
“Public and private sectors across the world are facing unprecedented levels of digital threats which are only increasing year-on-year,” said Stephan Berner, Chief Executive Officer at Help AG. “Help AG’s State of the Market Report was created to be the ultimate guidebook for cybersecurity in the Middle East. Through the report, Help AG seeks to work closely with our clients and our partners to spread awareness and stay ahead of emerging threats, thus elevating cybersecurity for the entire region.”
Nicolai Solling, Chief Technology Officer at Help AG added: “Cybersecurity is not a one-man show. It takes collaboration amongst all responsible actors in the government and private sectors to improve the region’s digital security landscape. Through our State of the Market Report and our collaboration with the media, we are presenting to the market unparalleled intelligence into the state of cybersecurity in the Middle East.”
To download a copy of Help AG’s State of the Market Report 2021, click here.
 
[1] https://www.netscout.com/blog/asert/crossing-10-million-mark-ddos-attacks-2020
[2] https://nvd.nist.gov/

More Sources

Khaleej Times Teach AI in schools to tackle future cybersecurity threats, say experts
News
لماذا تمثل حماية الإدراك المرحلة القادمة في تطور الأمن السيبراني؟

مقال ضيف بقلم أحمد علي، مدير قسم تصميم الحلول في المملكة العربية السعودية لدى شركة Help AG

1000_F_786457236_UiKejC5LhPKIG0WLtzV15rVVrh7XBzp2
News
MENA TECH: Why protecting perception is the next evolution of cybersecurity?

Guest article by Ahmad Ali, Solution Architecture – Manager, KSA, Help AG Every enterprise has always generated data. Increasingly, it is generating something far more valuable; a continuous understanding of itself. For most of the digital era, organizations understood cybersecurity through the lens of information....

Visualisation-of-Digital-Data-Security-Graphics-101439575-1
News
كيف تبني الإمارات الثقة في عصر الذكاء الاصطناعي - CNN

تتنامى أهمية الذكاء الاصطناعي بسرعة كبيرة بصفته سمة مميزة للاقتصادات الحديثة، وتتجه الدول حول العالم إلى توظيف قدراته لتحفيز النمو الاقتصادي والابتكار والتحول الوطني، وتسبق دولة الإمارات هذا التوجه العالمي من خلال دمج الذكاء الاصطناعي ليكون ركيزة أساسية في مختلف الجهات الحكومية والقطاعات الاقتصادية والخدمات العامة

digital-shield-protecting-data-cyber-world_718046-29848
News
Gulf News: Four pillars of trusted innovation to secure the UAE’s digital future.

Artificial intelligence is rapidly becoming a defining capability of modern economies. Around the world, nations are embracing AI as a catalyst for economic growth, innovation, and national transformation. The UAE is taking this one step further by embedding AI as a foundational capability across government, industry, and public services.

1732720821235
News
Khaleej Times: GCC firms shift focus to cyber resilience, sovereignty as AI reshapes threat landscape

Organisations across the Gulf are increasingly prioritising operational resilience and digital sovereignty as cybersecurity strategies adapt to faster, more complex threats, according to a new industry report. The latest annual State of the Market Report 2026 by Help AG highlights a shift away from traditional, reactive security models towards continuous, adaptive systems aligned with broader national and infrastructure goals.

Nikola Kukoljacs Gulf News
News
Help AG Strengthens Cybersecurity Leadership with DESC SOC Certification

Help AG's Security Operations Centre (SOC) has successfully achieved certification from the Dubai Electronic Security Center (DESC). This significant milestone independently validates the strength of our security operations, demonstrating the capabilities, operational maturity, and service excellence that underpin our cybersecurity offerings. The certification covers both our Managed Security Services (MSS) and Managed Security Controls Services (MSC) capabilities, enabling Help AG to deliver certified security services to Dubai Government entities. Beyond the certification itself, this achievement reflects the expertise, dedication, and collaboration of teams across the organization. It is a testament to the high standards we uphold, our commitment to operational excellence, and the trust our customers place in us every day.

Download the Content

I’m interested in the solutions & services from?

(Choose all that apply)

Schedule a Consultation