DNS Security

Sponsored
by

Noteworthy

WHOIS History API: Powering Domain Investigations

Reverse WHOIS: A Powerful Process in Cybersecurity

Domain Research and Monitoring: Keeping an Eye on the Web for You

DNS Security / Featured Blogs

The Case for Longitudinal DNSSEC Data

Repeated DNSSEC failures show the limits of snapshot diagnostics. A longitudinal record of signed delegations could reveal persistent misconfigurations, rollover problems and correlated failures, helping operators identify recurring patterns and their likely sources.

How CZDS Zone Data Helps Detect Domain Abuse

Daily CZDS zone data can help brand owners and investigators detect suspicious domain registrations earlier, trace related infrastructure, monitor expired names, and shift enforcement from reactive disputes toward faster, evidence-based intervention.

The Reporting Gap: What Happens Between a DNS Abuse Complaint and a Takedown

DNS abuse enforcement can stop abusive domains and drive systemic registrar reforms, but reporting barriers, inconsistent response times, and poorly documented complaints leave many phishing sites active before actionable cases ever reach enforcement.

Caribbean-Born Niel Harper Joins ICANN Board, Sets Out Priorities in Q&A

Barbados-born cybersecurity specialist Niel Harper joins ICANN's board in October, aiming to strengthen Latin American and Caribbean participation, improve DNS security and abuse mitigation, and expand developing-economy access to the next gTLD round.

15th Registration Operations Workshop, September 29, 2026, 13:00 - 17:00 UTC

The 15th Registration Operations Workshop convenes domain name and DNS professionals September 29 for technical sessions on mTLS, RPKI, DNS resilience, delegations, DNSSEC, registrar concentration, dispute proceedings and alternative naming systems.

Proposed New DNS Resource Record Types for AI Agent Discovery

For more than three decades, domain names have served as a foundational identity layer for internet applications. Initially used to identify early network services such as TELNET, FTP, and email, they later became essential to web browsing and a growing range of online services.

From Forgotten to Exploited: How AI Changes the Dangling DNS Threat

Dangling DNS records can expose trusted corporate subdomains to takeover, while AI-assisted reconnaissance makes abandoned resources easier to find, increasing the need for continuous DNS monitoring rather than periodic audits.

Beyond Protocol and Policy: Why Project Jake is Reshaping the Architecture of Internet Trust

Project Jake aims to bridge the divide between internet protocols and policy, offering registries, law enforcement and rights holders a decentralised framework for accessing domain-registration data securely while navigating privacy laws and institutional gridlock.

Open-Weight AI: Open to Whom?

The push for open-weight AI promises broader access and competition, but true openness requires more than releasing model weights. Compute, infrastructure, training data, security, and control ultimately determine who can meaningfully benefit from open AI.

DNS Abuse and Criminal Infrastructure: Beyond Definitions and Blocklists

Research suggests criminals may control a striking share of newly registered gTLD domains, raising questions about whether ICANN's definitions, contractual safeguards and enforcement mechanisms are keeping pace with the industrial scale of technology-facilitated harm.