<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
  xmlns:dc="http://purl.org/dc/elements/1.1/"
  xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
  xmlns:admin="http://webns.net/mvcb/"
  xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
  xmlns:content="http://purl.org/rss/1.0/modules/content/">

Third segment: dns-security
  
  <channel>

  <title><![CDATA[CircleID]]></title>
  <link>https://circleid.com/topics/dns-security</link>
  <description>CircleID - DNS Security</description>
  <dc:language>en</dc:language>
  <dc:rights>Copyright 2026, unless where otherwise noted.</dc:rights>
  <dc:date>2026-08-18T22:23:00+00:00</dc:date>

  
    <item>
      <title><![CDATA[DNSSEC Doesn&#8217;t Need a Better Story - It Needs a Better Tuesday]]></title>
      <link>https://circleid.com/posts/dnssec&#45;doesnt&#45;need&#45;a&#45;better&#45;story&#45;it&#45;needs&#45;a&#45;better&#45;tuesday</link>
      <guid isPermaLink="true">https://circleid.com/posts/dnssec&#45;doesnt&#45;need&#45;a&#45;better&#45;story&#45;it&#45;needs&#45;a&#45;better&#45;tuesday</guid>

      <description><![CDATA[DNSSEC adoption is stronger than headline figures suggest, yet uneven across industries. New data indicate the bigger obstacle is not reputation but operational friction, especially key rollovers, registrar coordination and automation still missing across major domains.]]></description>
      <dc:date>2026-08-18T11:39:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Massive Photo ZIP Campaign Targets Booking.com Partner and Other Hotels across Japan and Europe]]></title>
      <link>https://circleid.com/posts/massive&#45;photo&#45;zip&#45;campaign&#45;targets&#45;booking&#45;dot&#45;com&#45;partner&#45;and&#45;other&#45;hotels</link>
      <guid isPermaLink="true">https://circleid.com/posts/massive&#45;photo&#45;zip&#45;campaign&#45;targets&#45;booking&#45;dot&#45;com&#45;partner&#45;and&#45;other&#45;hotels</guid>

      <description><![CDATA[A sprawling phishing campaign targeting hotels in Japan and Europe used deceptive photo ZIP files and legitimate web services to establish persistent access, while researchers uncovered thousands of potentially connected infrastructure artifacts and victim IP addresses.]]></description>
      <dc:date>2026-08-18T11:18:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Global Domain Activity Trends Seen in Q2 2026]]></title>
      <link>https://circleid.com/posts/global&#45;domain&#45;activity&#45;trends&#45;seen&#45;in&#45;q2&#45;2026</link>
      <guid isPermaLink="true">https://circleid.com/posts/global&#45;domain&#45;activity&#45;trends&#45;seen&#45;in&#45;q2&#45;2026</guid>

      <description><![CDATA[WhoisXML API's Q2 2026 analysis reveals rising domain registrations, shifting TLD rankings, growing DNS infrastructure concentration, and evolving malicious domain activity, based on billions of DNS records and millions of newly registered and confirmed malicious domains.]]></description>
      <dc:date>2026-08-13T07:43:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[DNS Security Gets Fixed When Someone Notices - Not Before]]></title>
      <link>https://circleid.com/posts/dns&#45;security&#45;gets&#45;fixed&#45;when&#45;someone&#45;notices&#45;not&#45;before</link>
      <guid isPermaLink="true">https://circleid.com/posts/dns&#45;security&#45;gets&#45;fixed&#45;when&#45;someone&#45;notices&#45;not&#45;before</guid>

      <description><![CDATA[A study of 309 universities, museums and sports brands finds DNS security follows visible threats rather than technical risk, leaving organisations well protected against familiar attacks while quieter weaknesses in critical infrastructure persist unnoticed.]]></description>
      <dc:date>2026-08-10T13:57:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[APT37 Strikes Again, This Time with NarwhalRAT]]></title>
      <link>https://circleid.com/posts/apt37&#45;strikes&#45;again&#45;this&#45;time&#45;with&#45;narwhalrat</link>
      <guid isPermaLink="true">https://circleid.com/posts/apt37&#45;strikes&#45;again&#45;this&#45;time&#45;with&#45;narwhalrat</guid>

      <description><![CDATA[North Korea's APT37 has launched a new NarwhalRAT campaign using spearphishing emails and malicious LNK files to deploy data-stealing malware. Researchers also uncovered infrastructure links and fresh indicators that expand the group's known operational footprint.]]></description>
      <dc:date>2026-08-07T08:38:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Phantom Squatting: When LLMs&#8217; Hallucination Becomes an Attacker&#8217;s Best Friend]]></title>
      <link>https://circleid.com/posts/phantom&#45;squatting&#45;when&#45;llms&#45;hallucination&#45;becomes&#45;an&#45;attackers&#45;best&#45;friend</link>
      <guid isPermaLink="true">https://circleid.com/posts/phantom&#45;squatting&#45;when&#45;llms&#45;hallucination&#45;becomes&#45;an&#45;attackers&#45;best&#45;friend</guid>

      <description><![CDATA[As AI reshapes cybersecurity, attackers are exploiting a fundamental weakness in large language models. Phantom squatting turns hallucinated domain names into trusted attack vectors, creating a new class of DNS abuse that defenders cannot solve by eliminating hallucinations alone.]]></description>
      <dc:date>2026-08-04T08:55:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[A DNS Investigation of LenAI&#8217;s ErrTraffic ClickFix Distribution Network]]></title>
      <link>https://circleid.com/posts/a&#45;dns&#45;investigation&#45;of&#45;lenais&#45;errtraffic&#45;clickfix&#45;distribution&#45;network</link>
      <guid isPermaLink="true">https://circleid.com/posts/a&#45;dns&#45;investigation&#45;of&#45;lenais&#45;errtraffic&#45;clickfix&#45;distribution&#45;network</guid>

      <description><![CDATA[An analysis of LenAI's ErrTraffic ClickFix infrastructure uncovered new DNS links, exposing malicious domains, IPs, typosquatting clusters, and email connections that broaden threat visibility and support stronger detection and incident response through expanded network intelligence.]]></description>
      <dc:date>2026-07-31T08:39:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Call for Participation: DNSSEC and Security Workshop at ICANN87 (21 October 2026)]]></title>
      <link>https://circleid.com/posts/call&#45;for&#45;participation&#45;dnssec&#45;and&#45;security&#45;workshop&#45;at&#45;icann87</link>
      <guid isPermaLink="true">https://circleid.com/posts/call&#45;for&#45;participation&#45;dnssec&#45;and&#45;security&#45;workshop&#45;at&#45;icann87</guid>

      <description><![CDATA[ICANN is inviting proposals for its DNSSEC and Security Workshop at ICANN 87, offering experts and practitioners a platform to share insights on DNS security, routing security, browser security, and emerging Internet infrastructure challenges.]]></description>
      <dc:date>2026-07-29T15:34:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[The 2024-2026 Root Zone KSK Rollover: Updates and Observations]]></title>
      <link>https://circleid.com/posts/the&#45;2024&#45;2026&#45;root&#45;zone&#45;ksk&#45;rollover&#45;updates&#45;and&#45;observations</link>
      <guid isPermaLink="true">https://circleid.com/posts/the&#45;2024&#45;2026&#45;root&#45;zone&#45;ksk&#45;rollover&#45;updates&#45;and&#45;observations</guid>

      <description><![CDATA[Roughly a year and a half ago, Verisign and ICANN began the important, multi-year process of updating the cryptographic key that secures the authoritative DNS root zone. This work has been largely invisible to the public, but vital to the security of many everyday online activities.]]></description>
      <dc:date>2026-07-28T08:30:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Inside a TDS-Powered ClickFix Malware Ecosystem: A DNS Deep Dive]]></title>
      <link>https://circleid.com/posts/inside&#45;a&#45;tds&#45;powered&#45;clickfix&#45;malware&#45;ecosystem&#45;a&#45;dns&#45;deep&#45;dive</link>
      <guid isPermaLink="true">https://circleid.com/posts/inside&#45;a&#45;tds&#45;powered&#45;clickfix&#45;malware&#45;ecosystem&#45;a&#45;dns&#45;deep&#45;dive</guid>

      <description><![CDATA[DNS analysis of a malware distribution ecosystem uncovered thousands of linked artifacts, exposing typosquatting, malicious infrastructure and victim connections that broaden detection opportunities beyond Check Point Research's original indicators through expanded DNS intelligence correlation efforts.]]></description>
      <dc:date>2026-07-27T12:51:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Digital Sovereignty Is More Than Data Sovereignty: Understanding Africa&#8217;s Digital Dependency Stack]]></title>
      <link>https://circleid.com/posts/digital&#45;sovereignty&#45;is&#45;more&#45;than&#45;data&#45;sovereignty&#45;understanding&#45;africas&#45;digital&#45;dependency&#45;stack</link>
      <guid isPermaLink="true">https://circleid.com/posts/digital&#45;sovereignty&#45;is&#45;more&#45;than&#45;data&#45;sovereignty&#45;understanding&#45;africas&#45;digital&#45;dependency&#45;stack</guid>

      <description><![CDATA[Africa's pursuit of digital sovereignty demands more than keeping data at home. True resilience depends on controlling the infrastructure, platforms, cybersecurity capabilities, governance, and human expertise that underpin an increasingly interconnected digital economy across Africa.]]></description>
      <dc:date>2026-07-20T08:52:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[DNS Investigation: Threat Actor TA4922 Goes Global]]></title>
      <link>https://circleid.com/posts/dns&#45;investigation&#45;threat&#45;actor&#45;ta4922&#45;goes&#45;global</link>
      <guid isPermaLink="true">https://circleid.com/posts/dns&#45;investigation&#45;threat&#45;actor&#45;ta4922&#45;goes&#45;global</guid>

      <description><![CDATA[TA4922 is expanding beyond nearby targets, deploying a fast-changing malware arsenal across Europe and Africa. A DNS investigation uncovered thousands of connected domains, dozens of malicious assets and signs of compromised victim infrastructure worldwide today.]]></description>
      <dc:date>2026-07-17T08:56:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[The Question Isn&#8217;t Whether the Harm Is Real - It&#8217;s Who Should Act]]></title>
      <link>https://circleid.com/posts/the&#45;question&#45;isnt&#45;whether&#45;the&#45;harm&#45;is&#45;real&#45;its&#45;who&#45;should&#45;act</link>
      <guid isPermaLink="true">https://circleid.com/posts/the&#45;question&#45;isnt&#45;whether&#45;the&#45;harm&#45;is&#45;real&#45;its&#45;who&#45;should&#45;act</guid>

      <description><![CDATA[Measuring online abuse can reveal its scale, but not who should intervene. Effective policy must distinguish harm from contractual responsibility, identify the actors best placed to act, and target remedies where they can work effectively.]]></description>
      <dc:date>2026-07-17T08:05:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[Under the DNS Hood of an Ongoing Legacy MSHTA Tool Attack]]></title>
      <link>https://circleid.com/posts/under&#45;the&#45;dns&#45;hood&#45;of&#45;an&#45;ongoing&#45;legacy&#45;mshta&#45;tool&#45;attack</link>
      <guid isPermaLink="true">https://circleid.com/posts/under&#45;the&#45;dns&#45;hood&#45;of&#45;an&#45;ongoing&#45;legacy&#45;mshta&#45;tool&#45;attack</guid>

      <description><![CDATA[A DNS analysis of infrastructure behind ongoing MSHTA abuse uncovered malicious registrations, typosquatting clusters, victim activity, and hundreds of linked indicators, revealing how legacy Windows tooling continues enabling modern malware campaigns through interconnected DNS intelligence.]]></description>
      <dc:date>2026-07-10T09:16:00-07:00</dc:date>
    </item>
  
    <item>
      <title><![CDATA[macOS ClickFix Campaign Delivers AMOS and Other Infostealers: A DNS Deep Dive]]></title>
      <link>https://circleid.com/posts/macos&#45;clickfix&#45;campaign&#45;delivers&#45;amos&#45;and&#45;other&#45;infostealers&#45;a&#45;dns&#45;deep&#45;dive</link>
      <guid isPermaLink="true">https://circleid.com/posts/macos&#45;clickfix&#45;campaign&#45;delivers&#45;amos&#45;and&#45;other&#45;infostealers&#45;a&#45;dns&#45;deep&#45;dive</guid>

      <description><![CDATA[A DNS deep dive into Microsoft's macOS ClickFix campaign uncovered victim infrastructure, typosquatting clusters, malicious registrations, and hundreds of linked indicators, exposing a broader infostealer ecosystem beyond the original 140 network IoCs identified by Microsoft.]]></description>
      <dc:date>2026-07-06T08:58:00-07:00</dc:date>
    </item>
  

  </channel>
  

</rss>