▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Red Sift’s DNS Guardian Stops Domain Takeovers and SubdoMailing

Red Sift today announced DNS Guardian – a new feature in Red Sift OnDMARC which security teams can use to swiftly identify and stop domain takeovers that lead to impersonation and spam. After Red Si...

Immagine

New research shows true scale of bad actors taking over legitimate domains to send malicious mail

SAN FRANCISCO & LONDON: Red Sift today announced DNS Guardian – a new feature in Red Sift OnDMARC which security teams can use to swiftly identify and stop domain takeovers that lead to impersonation and spam. After Red Sift began conducting its own research on the SubdoMailing campaign, first identified in February 2024, the company recognized an increasingly critical need to protect organizations from this emerging threat. Red Sift is the first to offer these comprehensive spam protection capabilities.

Bad actors are actively exploiting gaps in organizations’ Domain Name System (DNS) setups to send fraudulent mail on behalf of legitimate brands. DNS records that are not properly configured or maintained can be easily exploited to spoof emails from legitimate domains and pass even the strictest Domain-based Message Authentication, Reporting & Conformance (DMARC) policies. SubdoMailing has proven that an organization’s DMARC policy is only as strong as its DNS hygiene. New research released today by Red Sift shows that the scale of the SubdoMailing attack is much greater than initially reported.

“In supporting and counseling customers through the SubdoMailing campaign, our team not only identified that the attack was far more widespread than initially believed, but that many organizations did not understand the overlap between DNS and DMARC. We were compelled to take action,” said Rahul Powar, CEO, Red Sift. “With DNS Guardian, our customers can stop ongoing attacks, protect revenue, mitigate fines, and empower overworked security teams.”

DNS Guardian fills the gap between DNS and DMARC to ensure organizations are protected from takeover attacks and impersonation in the inbox. Using Red Sift ASM and deep DNS expertise as a foundation, Red Sift is the only DMARC provider able to surface the level of domain detail required to prevent takeover attacks like SubdoMailing. Red Sift achieves this through its:

  • Subdomain Discovery: Utilizes advanced discovery techniques from Red Sift ASM to identify all subdomains associated with a given domain.
  • Dangling DNS Detection: Identifies subdomains with misconfigured or unused DNS records that are susceptible to being taken over by malicious actors.
  • Bad Actor Identification: Detects subdomains already controlled by bad actors through CNAME takeover or legitimate CNAME delegation with poisoned SPF records.
  • Risk Assessment: Analyzes the severity and impact of identified security threats.
  • Actionable Insights: Provides actionable recommendations and remediation steps to address identified risks and strengthen domain security.

OnDMARC Premier with DNS Guardian will be available from Red Sift as well as through Cisco as Domain Protection Premier.

About Red Sift

Red Sift enables organizations to anticipate, respond to, and recover from cyber attacks while continuing to operate effectively. The award-winning Red Sift application suite is the only integrated solution that combines four interoperable applications, internet-scale cybersecurity intelligence, and innovative generative AI that puts organizations on the path to cyber resilience.

Red Sift is a global organization with offices in North America, Australia, Spain, and the UK. It boasts a global client base across all industries, including Capgemini, Domino’s, ZoomInfo, Athletic Greens, and top global law firms. Red Sift is the official DMARC provider for Cisco and a trusted partner for Microsoft, Validity, and Entrust, among others. Learn more at redsift.com.

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

Integral AI Unveils World’s First AGI-capable Model

#AGI--Integral AI, a global leader in the development of embodied AGI, today announced the successful testing of the world’s first AGI-capable model.…

Reply Achieves the AWS Agentic AI Specialization and Is Named an Implementation…

Reply [EXM, STAR: REY] announced that it has achieved the Amazon Web Services (AWS) Agentic AI Specialization, a new category within the AWS AI Competency.…

Tecnotree Emerges as CX Catalyst Winner for Impact at The Fast Mode Awards…

Tecnotree, a global digital platform and services leader for AI, 5G, and cloud-native technologies, has won the CX Catalyst award for Impact at The Fast…

CoMotion GLOBAL 2025 Launches in Riyadh: Global Mobility Leaders Unite…

Riyadh is rapidly becoming one of the world's most ambitious urban mobility laboratories, where next-generation technologies move from blueprint to real-world…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!