Tuesday, 5 October 2021

Microsoft partners with the EDM Council to empower Chief Data Officers to achieve more in the cloud

Microsoft Partners, Microsoft Exam Prep, Microsoft Certification, Microsoft Tutorial and Materials, Microsoft Learning, Microsoft Preparation

Microsoft recently announced a strategic collaboration with the Enterprise Data Management (EDM) Council to further support its investment in building end-to-end cloud data management solutions for multi-cloud and hybrid environments.

Read More: MB-240: Microsoft Dynamics 365 Field Service

In May 2020, the EDM Council established the largest open industry workgroup to define a best practice standard to help organizations move their data to the cloud and ensure the appropriate controls are in place to protect their sensitive data. Microsoft was one of the founding members, working alongside over 100 companies and 300 professionals representing leading financial industry firms, major cloud providers, key technology companies, and advisory firms. Together, we developed the Cloud Data Management Capability (CDMC) Framework to address a holistic set of standard capabilities to help guide organizations to migrate securely to the cloud.

“We’ve seen some of our largest enterprise customers face significant challenges in developing their own framework to effectively move data to the cloud and CDMC addresses this issue holistically,” said Mike Flasko, General Manager, Azure Data Governance Platform at Microsoft. "The dialogue and partnership with the CDMC members has been instrumental in helping us better shape Azure Purview and automating top data management challenges faced by the industry. We look forward to further collaboration with the Council.”

The EDM Council released the first deliverable of the CDMC Framework, 14 Key Controls to help streamline the adoption of cloud services. Today, we announce the release of the broader best practice framework available for free consumption to help organizations and their Chief Data Officers effectively manage their data in the cloud and assess the underlying maturity of their cloud data management principles.

“We greatly appreciate the participation and commitment from all participating firms and are excited to partner with Microsoft, who brought the largest participation from a cloud provider, to influence the CDMC framework.”—John Bottega, President, EDM Council.

Microsoft has a multitude of resources worldwide to support the implementation of the Azure platform, including specialists who work with the largest enterprise customers to assess and advance their data management capabilities.

"We are excited about this partnership with the EDM Council to help organizations assess the maturity of their data management capabilities on-premises and in the cloud.”—Raghu Ramakrishnan, CTO of Azure Data and recent Board of Directors appointee to the EDM Council.

Data-centric financial institutions like TD Bank Group, are leveraging the CDMC standard to help lay out the foundations and guiding principles for how their data is collected and used in the cloud.

“The CDMC framework helps us identify areas of automation to further accelerate our Azure adoption and leverage Microsoft’s security and comprehensive cloud data capabilities.”—Wes Anderson TD’s VP of Enterprise Data Management, who also joined the Council in the creation of the CDMC standard.

We join the industry in celebrating the public release of the CDMC framework today. The release of the framework also coincides with today’s announcement that Azure Purview is now generally available. Azure Purview is a unified data governance solution from Microsoft that helps you manage and govern your data across your entire data estate, whether that data is housed on-premises, in other clouds, and or in software-as-a-service (SaaS) applications. With Azure Purview, you can easily create a holistic, up-to-date map of your data landscape with automated data discovery, sensitive data classification, and end-to-end data lineage while enabling data consumers to find valuable, trustworthy data. 

About the EDM Council

The EDM Council is the leading trade association for data management with a global membership base of over 10,000 data management professionals spanning across over 250 organizations. The EDM Council has spent the past 15 years building a community of data practitioners to develop a common taxonomy and provide data maturity assessments.

Source: microsoft.com

Saturday, 2 October 2021

Streamline your DDoS management with new Azure Firewall Manager capabilities

As customers continue to adopt a Zero Trust security approach in their digital transformation, they often prefer a way to manage their network security policies and resources in one central place. Today, we are announcing that Azure Firewall Manager now supports managing Azure DDoS Protection Standard for virtual networks. This support is now in preview.

Azure Firewall Manager is a security management service that provides a central security policy for cloud-based security perimeters. Through Azure Firewall Manager, customers can automatically deploy a firewall to a virtual network or secured virtual hub.

Read More: MB-230: Microsoft Dynamics 365 Customer Service

Azure DDoS Protection Standard provides enhanced Distributed Denial-of-Service (DDoS) mitigation features to defend against DDoS attacks. It is automatically tuned to protect all public IP addresses in virtual networks. Protection is simple to enable on any new or existing virtual network and does not require any application or resource changes.  

Enabling DDoS Protection Standard on a virtual network will protect the Azure Firewall and any publicly exposed endpoints that reside within the virtual network.

Manage DDoS Protection Plans on your virtual networks

In Azure Firewall Manager, you can now manage DDoS Protection Plans alongside Azure Firewall deployments in a single pane, improving overall user experience and reducing time spent managing multiple network security products.

Azure Firewall Manager, Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Preparation, Azure Guides, Azure Learning
Figure 1: Enabling DDoS Protection Standard on a virtual network in Azure Firewall Manager

Azure Firewall Manager, Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Preparation, Azure Guides, Azure Learning
Figure 2: DDoS Protection Plan attached to virtual networks in Azure Firewall Manager

View and create DDoS Protection Plans in Azure Firewall Manager


You can also view and create DDoS Protection Plans from the Azure Firewall Manager experience.

Azure Firewall Manager, Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Preparation, Azure Guides, Azure Learning
Figure 3: View of DDoS Protection Plans in Azure Firewall Manager

Monitor your overall network security posture


Azure Firewall Manager now provides monitoring of your overall network security posture. Here, you can easily see which virtual networks and virtual hubs are protected by Azure Firewall, a third-party security provider, or DDoS Protection Standard. This overview can help you identify and prioritize any security gaps that are in your Azure environment, across subscriptions, or for the whole tenant.

Azure Firewall Manager, Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Preparation, Azure Guides, Azure Learning
Figure 4: Monitoring page in Azure Firewall Manager

Source: microsoft.com

Thursday, 30 September 2021

Govern your data wherever it resides with Azure Purview

By 2025, the volume of data generated per year is expected to grow to 175 zettabytes (ZB). Yet, most organizations aren't prepared to properly govern all this data. As a data professional in charge of managing this influx of data, are you prepared to answer questions like where did my organization’s data come from? Is the access and usage of that data by different departments compliant? And what regulatory requirements govern that data?

Read More: MB-220: Microsoft Dynamics 365 Marketing

The number and types of data sources are also multiplying. Data may be stored on-premises, across different public clouds, and in a multitude of software-as-a-service (SaaS) applications. Tracking all this data manually in Excel or in another spreadsheet will become increasingly difficult and cumbersome. An organization that does not have an automated and holistic understanding of its entire data estate across these different sources will find it increasingly challenging to adapt quickly to changing market and regulatory conditions.

The need for a comprehensive data management and data governance service has never been stronger. That is why we built Azure Purview, a unified data governance solution that helps organizations achieve a complete understanding of their data regardless of if it’s housed on-premises in services like SQL Server and Oracle, in different clouds like Amazon Web Services (AWS) S3, or in SaaS applications like Salesforce. You can easily create a unified map of your data assets and their relationships with automated data discovery and sensitive data classification, get insight into the location and movement of sensitive data across your hybrid landscape, and empower data consumers to find valuable data through a data catalog.

Azure Exam Prep, Azure Purview, Azure Tutorial and Material, Azure Career, Azure Prep, Azure Learning

Azure Purview further extends your existing Microsoft and Azure investments by allowing you to quickly and easily add data governance capabilities to your current workloads. For analytics, Azure Purview is deeply integrated with Azure Synapse Analytics so you can search and interact with Azure Purview assets from within the Azure Synapse Studio. Azure Purview captures the lineage relationships between data assets all the way from raw data to business insights. These relationships are captured automatically and kept up to date with turnkey integrations of Azure Purview with SQL Server, Microsoft Power BI, Azure SQL, and more. Additionally, Azure Purview’s automated data classification uses more than 200 prebuilt and custom classifiers to detect sensitive data types such as business terms, government IDs, names, location data, and more. Furthermore, Azure Purview’s integration with Microsoft Information Protection ensures that sensitivity labels you have already defined in the Microsoft 365 Compliance Center can be applied consistently.

Azure Exam Prep, Azure Purview, Azure Tutorial and Material, Azure Career, Azure Prep, Azure Learning

It's exciting to see customers rapidly adopting Azure Purview for their data management needs. London Heathrow Airport, for example, has already achieved tremendous success with Azure Purview. To keep weather disruptions, aircraft delays, and global pandemics from disrupting operations and to identify growth opportunities, Heathrow needed an effectively managed data estate. Heathrow’s data scientists use Azure Purview to better understand data fields and give more people the opportunity to analyze data and extract insights. The airport’s data teams also use lineage data in Azure Purview to find correlations between datasets. This is critical to determining how each airport service affects broader operations.

“We used to have a lot of data about things we generally already understood but now that we’ve adopted Azure Purview, we have insight into the unknown, meaning we can aggregate multiple data sources in a more user-friendly way to discover where we can create efficiencies and make better predictions.”

—Dave Draffin, Azure Cloud and Data Architect, Heathrow Airport

Azure Exam Prep, Azure Purview, Azure Tutorial and Material, Azure Career, Azure Prep, Azure Learning

Today, we are excited to announce that Azure Purview is generally available. Every organization can now build a unified data governance solution to maximize the value of their data in the cloud.

Source: microsoft.com

Tuesday, 28 September 2021

5 Tips to Prepare for Microsoft Azure Cloud Certification Exam

For the last few years, the cloud has become a crucial part of almost every IT organization due to various benefits that come along with it. There are various IT giants that offer cloud services such as Google, Amazon, Microsoft, and various others. However, like all other tech-related fields, Microsoft is leading the cloud domain also with its most preferable cloud platform – Azure. Meanwhile, Microsoft offers an Azure Certification that can help you to get recognized as a cloud computing professional and will further land you up a high-paying job as well. Statistically, Microsoft Azure Certified professionals earn 15-20% more in comparison to the uncertified ones.

Microsoft Azure Cloud Certification Exam, Microsoft Exam Prep, Microsoft Career, Microsoft Tutorial and Materials, Microsoft Preparation, Microsoft Guides, Microsoft Prep

Before moving further, let’s take a brief introduction to the Azure Cloud Platform. Microsoft Azure, released in 2010, is a cloud computing platform that interacts with various services such as networking, storage, Internet of Things, development, etc. Azure offers various features such as less operational cost, easier implementation, better security, and many more. Now, get back to the point that how can you start to prepare for the Azure Cloud Certification. Here, in this article, we will discuss a roadmap regarding the Azure Cloud Certification with appropriate strategies and approaches. 

1. Choose the Relevant Azure Certification


The first and foremost task you need to do is select the right certification for yourself as per your goals. Yes, Microsoft offers various Azure exams and certifications as per the industry’s requirements. The certifications are categorized based on various levels – Fundamental, Associate, and Expert. The major Microsoft Azure Certifications as per the work-domain are listed below: 

◉ Microsoft Certified Azure Administrator (AZ-103)
◉ Microsoft Certified Azure Developer (AZ-203)
◉ Microsoft Certified Azure Data Engineer Associate (DP-200, DP-201)
◉ Microsoft Certified Azure AI Engineer Associate (AI-100)
◉ Microsoft Certified Azure Solutions Architect (AZ-300, AZ-301)

Hence, you need to get familiar or aware of all the certifications and then identify the particular one to meet your career goals. 

2. Get Familiar with Exam Format


Once you’ll be aware of all the Azure Certifications, then you are required to understand the exam format and procedure. It will help you to analyze what type of questions are asked in the exam and make it easier for you to pass with flying colors. You can go through various standard resources over the web to get the right content. Meanwhile, you are recommended to read the Microsoft Azure Official Documentation provided on the certification page. In this documentation, you’ll get all the information regarding every topic and other exam prerequisites and resources. It will surely help you to get the right learning path and guidance. Moreover, each certification exam has its own set of questions according to its domain such as Development, Data Science, etc., hence you need to prepare as per the particular certification. 

3. Start the Learning Process


After getting familiar with all the exam-related schemes, now it’s time to start the learning process. You can start to learn the basics from various resources (both paid and free) available over the web. Apart from the self-learning process, you can also join various training programs offered for specifically Microsoft Azure training. You can also opt for Microsoft Learn, a free learning platform by Microsoft, to get some quality resources and make your preparation better.

Microsoft Azure Cloud Certification Exam, Microsoft Exam Prep, Microsoft Career, Microsoft Tutorial and Materials, Microsoft Preparation, Microsoft Guides, Microsoft Prep

Meanwhile, this Microsoft Learning Platform can be proved as the one-stop solution for all the exam-related queries. Moreover, you can join Instructor-led Training to get more exposure and efficient learning. Also, you are recommended to go through some standard books that will help you to learn and prepare more for the certification exam.

4. Get Some Hands-on Experience


Needless to say, the best way to learn anything is to learn by doing! You’re required to get some hands-on experience with the technology to have practical knowledge about Microsoft Azure. Apart from reading books, attending lectures, watching tutorials, etc. you are recommended to try all your understood concepts out on a real system to make it more effective. Meanwhile, Microsoft also offers you to create Azure free account and various hands-on labs where you can get to practice with the latest cloud products and services in a live environment and can enhance your cloud skills at zero cost. It will make you more proficient with the technology as you can practice your skills multiple times with real-world scenarios. 

5. Must Solve Practice Tests


Regardless of the type of exam or certification, practice papers are always considered as one of the best ways to assess your knowledge and performance. You are recommended to solve official practice papers offered by Microsoft or can prepare from other reliable resources. It will surely help you to cover all the important domains for the perspective of the Microsoft Azure Certification exam. Also, it will help you to get familiar with the real exam environment such as time limit, type of questions, etc. 

So, these are the strategies that you need to follow to prepare for the Azure Cloud Certification. Indeed, Mircosoft Azure is the leading player in the cloud industry and as per its rapid growth, it is the best skill to learn to make a career in the tech industry.

Source: geeksforgeeks.org

Saturday, 25 September 2021

GAIA-X gets new support with European Eclipse Data Connector

Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Learning, Azure Preparation

Data has an increasingly important role in strengthening business models and offering improved public services but much of its potential remains untapped. Data sharing is an essential element to the promise of unlocking new business opportunities and broader economic growth for all industries. Europe has been a leading voice for years on the need to expand industry participation in data sharing. Business-to-business (B2B) data sharing is also a foundational concept of GAIA-X, an initiative to create a federated data infrastructure. Last month a coalition of leading European organizations announced the Eclipse Dataspace Connector (EDC) which is a European open-source project that enables multicloud, policy-based B2B data sharing. The EDC was showcased at the GAIA-X Hackathon in Munich on August 30 – 31, 2021.

Multicloud data sharing across organizations

Transmitting data from one organization to another is a technical problem that has been solved in innumerable ways. What is different about this project? Think about a large manufacturing company with its design organization using engineering software running on AWS, its factory systems running on Azure, its supply chain management systems hosted by SAP, and its custom-built cloud services for sales and marketing hosted by Deutsche Telekom. On top of that, they want to exchange data in their supply chain with their partners who have equally complicated systems. Each company may want to share data, but how to do that across multiple clouds and on-premises systems while remaining respectful of data sharing policies as well as privacy and security laws? In addition, what identity management system can support data sovereignty and federation requirements?

The EDC is made up of open-source components that enable multicloud, policy-based, federated data sharing based on European data sovereignty principles. Every party associated with the sharing and consumption of data needs to have a valid digital identity that provides them the level of sovereignty they desire based on their organizational requirements. Each party also needs to be able to declare the policies under which they are willing to exchange data and be able to enforce them. And ultimately, the sharing of data needs to be secure and efficient.

Enabling data innovation for modern business

Banks develop and provide cloud financial services, media content providers have cloud streaming services, airlines offer cloud ticketing and flight services—most modern businesses are cloud providers to their customers. Thus, every business—every cloud provider—will need to enable trusted data sharing. There are other problems that will need to be solved such as data semantics and the internal governance practices associated with the business decisions for sharing or receiving data. But putting the first layers of this complex structure in place is a significant step forward for enabling data innovation-based growth.

The fact that it is a European solution, governed by a European open-source software foundation, and led by organizations committed to protecting European values is critical to its acceptance in the GAIA-X process. Microsoft is pleased to support this project along with Fraunhofer Institute for Software and Systems Engineering ISST, Daimler TSS, BMW Group, Deutsche Telekom, Amazon AWS, SAP, Bosch, HPE, ZF Friedrichshafen and GAIA-X AISBL as well as the International Data Spaces Association.

Source: microsoft.com

Thursday, 23 September 2021

Enable industrial device connectivity with thousands of partner-provided Azure IoT Plug and Play device profiles

Azure IoT Plug and Play, Cloud Strategy, Internet of Things, Azure Exam Prep, Azure Tutorial and Material, Azure Career, Azure Learning, Azure Guides

Simplifying industrial IoT device connectivity has been top of mind for many of us at Microsoft. Recently we dramatically expanded our ability to support faster operational technology (OT) to cloud connectivity for up to 80 percent of all industrial equipment as part of our collaboration with key players in our partner ecosystem. This is big news—and something that everyone working on or selling IoT solutions should know as many companies struggle with connectivity implementation. Simply said, connecting existing industrial assets to the cloud just got a lot easier and you’ll save thousands of dollars in labor costs while dramatically accelerating your IoT project.

As a result of our partner collaborations and the latest Azure IoT technologies, we are able to offer rapid connectivity to tens of thousands of popular industrial IoT device profiles for use in industrial spaces. Providing connectivity for all types of sensors, devices, and machines—and expanding the opportunity for IoT implementation for everyone—as industrial grade machinery is present across many sectors and industries in the modern world.

The benefit of connected assets


As anyone who has delved into IoT knows, connecting devices and sensors are just the start of delivering on the value of IoT. It’s a time-consuming and often complex first step, but one that carries an enormous payoff. While digital transformation benefits for connected assets can be found in all sectors, industrial manufacturing, in particular, leads the way. For these companies, IoT solutions can reduce downtimes by 20–25 percent due to predictive maintenance and location monitoring—saving millions each year. And that’s before the operational efficiencies, business insights, and possibly new revenue streams from IoT big data and AI are applied.

Connectivity made easy with IoT Plug and Play


With the introduction of IoT Plug and Play, we’ve made the job of connecting devices to Azure IoT a lot easier, as it simplifies and democratizes IoT for our customers, partners, and device builders. This technology helps IT practitioners integrate smart devices into their solutions with minimal configuration. At its core, IoT Plug and Play uses a device model to describe the device’s capabilities using the Digital Twin Definition Language (DTDL). Once turned on, IoT Plug and Play-enabled devices quickly establish themselves as part of an IoT application in the cloud. Customers and partners can further accelerate projects with customizable dashboards and application templates in IoT Central.

Thousands of devices are IoT Plug and Play-enabled


For new IoT solutions and applications, our Azure Device Catalog currently offers hundreds of IoT Plug and Play-enabled certified devices. These devices can be easily connected to Azure IoT services such as Azure IoT, Azure IoT Hub, and Azure IoT Central.

The vast majority of the world’s industrial IoT projects are targeted towards existing assets and environments with a myriad IoT-capable sensors and devices that are already in use. For this reason, we are further expanding the use of IoT Plug and Play technology to these scenarios. And we are happy to share more about those partners who are helping us bring IoT Plug and Play technology to tens of thousands more industrial devices.

The two key partners we would like to highlight are:

CloudRail and their fully managed solution acquire data from industrial environments, pre-process it locally, and sends it to Azure IoT. CloudRail uses industry standards like OPC-UA to connect modern devices, while old machines are retrofitted with secondary sensors. Their database of over 12,000 sensor Azure Plug and Play-enabled definitions in combination with automated data normalization and device provisioning reduces the setup time for connecting a machine to the cloud from weeks to just hours. Using “CloudRail DMC”, their cloud-based device management solution, customers can securely run and manage a single connected machine or thousands.

Omnio offers a solution called Omnio Edge, which provides software-configured connectors for industrial assets Omnio Edge follows the IoT Plug and Play patterns to enable more than 60,000 device configurations. Their solution delivers a seamless experience for industrial legacy assets to be connected to cloud-based applications providing semantically coherent data labels, same units, same scaling, and synchronized timestamps.

With the combined power of Azure IoT Plug and Play and our partners, Azure IoT offerings at the edge are now more comprehensive and enabling—providing the ability to connect almost any type of industrial equipment while leveraging the full capabilities of the device spectrum. With these collaborations, Microsoft is enabling our customers and partners to deploy intelligent cloud workloads at the edge in a way that optimally balances power and simplicity.

Source: microsoft.com

Tuesday, 21 September 2021

Azure DDoS Protection—2021 Q1 and Q2 DDoS attack trends

In our 2020 retrospective, we highlighted shifts in the active cyberthreat landscape. With the huge surge in internet activity, particularly with the onset of the COVID-19 pandemic, Distributed Denial-of-Service (DDoS) attacks have ramped up significantly in both volume and complexity.

We continue to see such trends in the first half of the calendar year 2021. With the increased usage and supply of IoT devices as well as cryptocurrency like Bitcoin (which is hard to trace), we see a rise in ransomware and ransom DDoS attacks1, whose victims included Mexico’s national lottery sites2 as well as Bitcoin.org3, among others. The online gaming vertical continues to be a very attractive target of DDoS attacks, as experienced by Respawn Entertainment throughout the past few months who suffered significant disruptions to Titanfall’s gameplay4. More industries are being targeted, particularly higher education5, healthcare6, telecoms7, and public sectors. In May, a DDoS attack on Belnet, the internet service provider (ISP) for Belgium’s public sector, took down the websites of more than 200 organizations8 that included the Belgian government, parliament, universities, and research institutes.

Read More: AZ-900: Microsoft Azure Fundamentals

At Microsoft, the Azure DDoS Protection team protects every property in Microsoft and the entire Azure infrastructure. In this review, we share trends and insights into DDoS attacks we observed and mitigated throughout the first half of 2021.

Number of attacks

During the first half of 2021, we witnessed a sharp increase in DDoS attacks per day. Compared to Q4 of 2020, the average daily number of attack mitigations in the first half of 2021 increased by 25 percent. We mitigated an average of 1,392 attacks per day, the maximum reaching 2,043 attacks on May 24, 2021. In total, we mitigated upwards of 251,944 unique attacks against our global infrastructure during the first half of 2021.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

Attack bandwidth


In the first half of 2021, the largest attack bandwidth reported on Azure resources was 625 Gbps, down from 1 Tbps in Q3 of 2020. However, the average attack size increased by 30 percent, from 250 Gbps to 325 Gbps.

Attack duration


As with 2020, we continue to see that most attacks are short-lived, with 74 percent being 30 minutes or less and 87 percent being one hour or less.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

The proportion of short-lived attacks remained largely consistent across the first half of 2021. Seventy-six percent of attacks in Q1 of 2021 were 30 minutes or less duration, compared to 73 percent of attacks in Q2.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

This year, we see more advanced techniques being employed by attackers, such as recycling IPs to launch short-burst attacks.

Top attack vectors


Compared to 2020, we see a rise in volumetric transmission control protocol (TCP) flood attacks. The first half of 2021 was characterized by a shift towards attacks against web applications, whereby TCP attacks are at 54 percent of all attack vectors (mainly TCP, SYN, SYN-ACK, and ACK floods).

User datagram protocol (UDP) attacks were the top vector in 2020 comprising more than 65 percent of all attacks. In the first half of 2021, they decreased to 39 percent of overall attack vectors, with amplification attacks accounting for 11 percent of total attacks.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

While UDP attacks comprised the majority of attack vectors in Q1 of 2021, TCP overtook UDP as the top vector in Q2. From Q1 to Q2, the proportion of UDP dropped from 44 percent to 33 percent, while the proportion of TCP increased from 48 percent to 60 percent.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

Top attacked regions


Similar to 2020, the United States (59 percent), Europe (19 percent), and East Asia (6 percent) were the most attacked regions due to the concentration of financial services and gaming industries in these regions. As financial institutions tend to rely on TCP workloads, it makes sense that these regions have been harder hit in the first half of 2021, given the rise in TCP flood attacks.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

The United Arab Emirates has been increasingly hit by DDoS attacks on government, private, oil and gas, telecommunications, and healthcare sectors. The region was particularly hit hard in January, with 70 percent of its total attacks concentrated in that month.

As with 2020, East Asia (Hong Kong) remains a popular target of DDoS attacks, with 41 percent of its total attacks occurring in May and June. In June, we saw a huge uptick in SYN, SYN-ACK, and ACK flood attacks in the region and we mitigated multiple VIPs totaling up to 225M PPS of traffic.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

Top attack sources


The top source countries to generate DDoS attacks were the United States (29 percent), China (28 percent), Russia (3 percent), and followed by South Korea (3 percent). Unknown sources (7 percent) indicate that the autonomous system numbers (ASNs) were either garbage, spoofed, or private ASNs that we could not translate.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

New attack types observed


New zero-day attack vectors that we observed and defended against:

Microsoft Windows RDP abuse on UDP 3389

In January, Microsoft Windows servers with Remote Desktop Protocol (RDP) enabled on UDP/3389 were being abused to launch UDP amplification attacks. These attacks had an amplification ratio of 85.9:1 and a peak at ~750 Gbps.


D/TLS exploit reflection attack

In February, we saw instances of the Datagram Transport Layer Security (D/TLS) attack vector. Video streaming and gaming customers were getting hit by D/TLS refection attacks which exploited UDP source port 443.


Plex Media server abuse

In June, we saw an emerging reflection attack iteration for the Simple Service Delivery Protocol (SSDP). This protocol normally uses source port 1900, and the new mutation was either on source port 32414 or 32410, also known as Plex Media Simple Service Delivery Protocol (PMSSDP).


Protect your workloads with Azure DDoS Protection Standard


The world continues to be heavily dependent on digital services. We see a growing reliance on cloud-computing services, across sectors from financial services to healthcare. Cyberthreats are pervasive and ever-evolving, and it is always crucial for businesses to develop a robust DDoS response strategy and be proactive in protecting their public workloads.

Azure DDoS Protection Standard provides enhanced DDoS mitigation features to defend against DDoS attacks. It is automatically tuned to protect all public IP addresses in virtual networks. Protection is simple to enable on any new or existing virtual network and does not require any application or resource changes. Our recently released Azure built-in policies allow for better management of network security compliance by providing great ease of onboarding across all your virtual network resources and configuration of logs.

With the recent rise of web application DDoS attacks, it is best to use DDoS Protection Standard alongside Application Gateway web application firewall (WAF), or a third-party web application firewall deployed in a virtual network with a public IP, for comprehensive protection. This also works if you are using Azure Front Door alongside Application Gateway, or if your backend resources are in your on-premises environment. Additionally, when Application Gateway with WAF is deployed in a DDoS protected virtual network, there are no additional charges for WAF—you pay for the Application Gateway at the lower non-WAF rate.

Azure DDoS Protection, DDoS Attack Trends, Azure Exam Prep, Azure Tutorial and Material, Azure Certification, Azure Preparation, Azure Career

If you have a web application that receives traffic from the Internet and is deployed regionally, you can host your application behind Application Gateway, then protect it with a WAF against Layer 7 web attacks and enable DDoS Protection Standard on the virtual network which contains the Application Gateway and WAF. The backend origins of your application will be in your on-premises environment, which is connected over the virtual private network (VPN). DDoS Protection Standard will defend your application by mitigating bad traffic and routing the supposed clean traffic to your application.

Azure DDoS Protection Standard offers the following key benefits:

◉ Backed by the Microsoft global network: We bring massive DDoS mitigation capacity to every Azure region, scrubbing traffic at the Azure network edge before it can impact the availability of your services. If we identify that the attack volume is significant, we leverage the global scale of Azure to defend the attack from where it is originating.

◉ Cost protection: DDoS attacks often trigger the automatic scale-out of the service running in Azure. This could lead to a significant increase in network bandwidth, the scaling-up of the virtual machine count, or both. In the event of an attack, you can receive Azure credits for any scale-out of resources, so you do not have to worry about setting your application to auto-scale or paying the excess cost for egress data transfer.

◉ DDoS Rapid Response: During an active attack or after an attack, you can engage the DDoS Protection Rapid Response team for help with attack investigation and specialized support. The DDoS Protection Rapid Response team follows the Azure Rapid Response support model.

◉ Rich attack analytics: With DDoS attack analytics, you can view metrics, configure alerts, and get detailed mitigation reports and flow logs that give you detailed visibility into attack traffic and actions we are taking to mitigate a DDoS attack. You can also connect your logs to Azure Sentinel, and view and analyze your data in workbooks. With Azure Security Center, we offer alerts whenever your public IP is under a DDoS attack, or if the attack has been mitigated by us, and we also offer recommendations to enable DDoS Standard for your unprotected virtual networks.

Source: microsoft.com