CSC's 2023 Domain Security Report Finds Many Global 2000 Companies Neglect their .AI Domain Extensions Despite Surge in Popularity for Artificial Intelligence
전체 맥락을 이해하기 위해서는 본문 보기를 권장합니다.
"Over the last year, we've seen a surge in cybercriminals exploiting AI's popularity by attempting to register the domains of trusted brands for malicious activity. Companies need to deploy proactive monitoring and domain security measures beyond just foundational efforts," says Mark Calandra, president of CSC's Digital Brand Services division. "In addition, we warn about subdomain hijacking as our research shows that 1 in 5 companies have active DNS records that do not resolve, making them vulnerable to subdomain hijacking attacks. The report's findings point to a real need for companies to prioritize domain security if they wish to stay ahead of the numerous emerging threats on the horizon."
이 뉴스는 기업·기관·단체가 뉴스와이어를 통해 배포한 보도자료입니다.
이 글자크기로 변경됩니다.
(예시) 가장 빠른 뉴스가 있고 다양한 정보, 쌍방향 소통이 숨쉬는 다음뉴스를 만나보세요. 다음뉴스는 국내외 주요이슈와 실시간 속보, 문화생활 및 다양한 분야의 뉴스를 입체적으로 전달하고 있습니다.
WILMINGTON, Del. -- Businesswire -- CSC (https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.cscdbs.com%2F%3Futm_source%3Dpress%2Brelease%26utm_medium%3Dreferral%26utm_campaign%3DDomainSecReport2023&esheet=53587638&newsitemid=20231017103333&lan=en-US&anchor=CSC&index=1&md5=2cfcd52ae5447ed386e3a80072a889de), an enterprise-class domain registrar and world leader in mitigating domain and domain name system (DNS) threats, today released its 2023 Domain Security Report (https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.cscdbs.com%2Fen%2Fresources-news%2Fdomain-security-report%2F%3Futm_source%3Dpress%2Brelease%26utm_medium%3Dreferral%26utm_campaign%3DDomainSecReport2023&esheet=53587638&newsitemid=20231017103333&lan=en-US&anchor=2023+Domain+Security+Report&index=2&md5=dbfb6e27ae7e231e2bc4a52a53e20cf3) which found that 43% of Forbes Global 2000 companies do not have control over their branded artificial intelligence (.AI) domain names, and they’re actually registered by third parties. In addition, 49% of the .AI brand domains for these companies remain unregistered, leaving them exposed to fraud and brand infringement.
The 2023 Domain Security Report highlights how—despite rising phishing and online fraud—many companies are vastly unaware of the state of their domain name portfolio and overlook foundational domain security measures such as registry lock, domain-based message authentication, reporting, and conformance (DMARC), DNS security extensions (DNSSEC), and DNS redundancy. The rapid rise in AI adoption and integration further elevates the need for domain security investments. Driven by the trending popularity for AI, cybercriminals are now taking advantage of trusted brands by creating fraudulent .AI domain extensions that misdirect internet users. This is emphasized by the 350% year-over-year increase in domain dispute cases involving .AI extensions in 2023 from companies who realized .AI domains using their brand were misappropriated by third parties.
“Over the last year, we’ve seen a surge in cybercriminals exploiting AI’s popularity by attempting to register the domains of trusted brands for malicious activity. Companies need to deploy proactive monitoring and domain security measures beyond just foundational efforts,” says Mark Calandra, president of CSC’s Digital Brand Services division. “In addition, we warn about subdomain hijacking as our research shows that 1 in 5 companies have active DNS records that do not resolve, making them vulnerable to subdomain hijacking attacks. The report’s findings point to a real need for companies to prioritize domain security if they wish to stay ahead of the numerous emerging threats on the horizon.”
Additional key insights from CSC’s research include:
· 79% of lookalike domains are owned by third parties, up 4% from 2022 Malicious actors continue to capitalize on lookalike domains (homoglyphs) that resemble the Global 2000 brands to launch phishing attacks, other forms of digital brand abuse, or IP infringement. · 112 of the largest companies in the world had a domain security score of “0” Based on CSC’s analysis of the adoption of key domain security measures, these companies do not deploy any recommended domain security measures, leaving them with the highest risk of domain security threats. · DMARC adoption grew 6% in 2023, up 28% since 2020 With increasing volume and complexity of phishing attacks, industries continue to see value in DMARC, which validates emails and protects a company’s email domain from being used for spoofing and phishing scams. This proven value can be seen in the significant growth rate of DMARC adoption over the last four years—from 39% in 2020 to 67% in 2023. · 46% of companies that use enterprise-class registrars also use registry lock Registry lock enables end-to-end domain name transaction security to mitigate human error and third-party risk, and it’s especially effective in protecting domain names against accidental or unauthorized modifications or deletions. CSC’s report emphasizes the value that enterprise-class registrars provide to companies looking to implement effective domain security and protect their brands, as only 7% of companies that use consumer-grade registrars have registry lock deployed. · 21% of DNS active subdomain records do not resolve, leaving companies vulnerable to subdomain hijacking In addition to analyzing the Forbes 2000 list of companies, CSC analyzed over 6 million DNS records from our database and identified over 440,000 DNS records by looking at A records and CNAMEs pointing to major cloud infrastructure. This can result in a subdomain hijacking attack by bad actors.
CSC’s report provides a more detailed breakdown of the highest and lowest performing industries based on the adoption of key domain security features such as having an enterprise-class registrar, registry lock, certificate authority authorization (CAA) records, DNS redundancy, DNSSEC, sender policy framework (SPF), DomainKeys identified mail (DKIM) and DMARC. The top five highest performing industries include IT software and services; media; business services and supplies; hotels, restaurants and leisure; and healthcare equipment and services. The lowest performing industries include utilities, trading companies, food markets, construction and materials.
To learn more about CSC’s approach to domain security, visit cscdbs.com. Download the 2023 Domain Security Report now.
About CSC
CSC is the trusted security and threat intelligence provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known cybersecurity oversights that exist, and help them secure their online digital assets and brands. By leveraging CSC’s proprietary technology, companies can solidify their security posture to protect against cyber threat vectors targeting their online assets and brand reputation, helping them avoid devastating revenue loss, and significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.
View source version on businesswire.com: https://www.businesswire.com/news/home/20231017103333/en/
이 뉴스는 기업·기관·단체가 뉴스와이어를 통해 배포한 보도자료입니다.
출처:CSC
보도자료 통신사 뉴스와이어(www.newswire.co.kr) 배포
Copyright © 뉴스와이어. 무단전재 및 재배포 금지.
- 한국요꼬가와, 생물의약품 내 미세 입자 분석을 위한 Flow Imaging Microscopy 웨비나 개최 - 뉴스와이
- LG에너지솔루션 버테크, 대규모 ESS 프로젝트 공급 계약 체결 - 뉴스와이어
- 플라스틱프리, 흑백정육왕 챌린지로 친환경 캠페인 동참 - 뉴스와이어
- 한 해의 끝에서 정영환 작가와 푸른 숲이 전하는 위로와 휴식, 삼원갤러리 ‘TIMELESS BLUE’ 개최 -
- 두산에너빌리티, 한전KPS와 ‘가스터빈 서비스 사업’ 협력한다 - 뉴스와이어
- 현대엘리베이터, 승강기 유지관리대수 20만 대 돌파 - 뉴스와이어
- 삼성전자 ‘지스타 2024’에서 오디세이 모니터 체험존 ‘All Ready. OLED’ 운영 - 뉴스와이어
- 도쿄관광한국사무소, 도쿄를 환하게 수놓는 겨울 이벤트의 대명사 ‘Roppongi Hills Christmas 2024’ 소
- 세인트조지 의과대학, 2025년 1월 입학 지원서 접수… 한국 학생 지원 독려 - 뉴스와이어
- 하자센터 ‘인스파이어✕하자 데이’ 성료 - 뉴스와이어