Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the ninja-forms-zoho-crm domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /www/scoutdns_226/public/wp-includes/functions.php on line 6121
New Top Abusers in Top-Level Domains - ScoutDNS
spamhaus_logo

New Top Abusers in Top-Level Domains

Spamhaus recently released their updated Q2 Botnet Threat Report. There is a lot of good data within the report detailing the heavy increase in Command and Control/Botnet threats as others have observed during 2020. We’ve spent some time detailing threats related to managing TLDs and so pertaining to this we will focus on a couple of points.

Key TLD Threat Observations*

.top has surged heavily in domains chosen for botnet operations now containing the second most number of known threats just behind all time most abused TLD, .com. Another TLD with a significant increase in known threats is .gq.

.de (Germany) is the only new country code top level domain to break into the top 20 most abused TLDs.

It’ worth noting that a few TLDs have made great progress in cleaning up their neighborhoods and these include .tw, .in, .top, .me, and .site all of which have dropped out of the top 20 in Spamhaus’s rankings.

Bad Networks*

The United States still hosts the largest amount of botnet C&Cs, demonstrating that geolocation alone is not enough to filter by, but Russia is working hard to challenge the US for that top spot. Also, there are a number of bad networks that show little interest in responding to reports. The worst being network providers many have not heard of. That being said, three well known cloud providers make it into the top 20 networks hosting C&C domains. It is of course worth noting that they host a significant number of sites each respectively.

You can read the full report from Spamhaus here.

 

*Spamhaus, it’s logo, and all content related to their research is Copyright The Spamhaus Project SLU. 

 

 

More To Explore

ScoutDNS G2 Spring 24′ Awards

I am pleased to share that G2 has released their Spring 2024 awards for DNS Security products and as a result ScoutDNS has earned 12

Have any questions? Just Ask