New study suggests 10% to 20% of domains are registered for bad purposes, but it might be even higher. Every month, eight to ten million domain names are registered. How many of these are registered for malicious purposes? It depends on who you ... Continue ReadingLeave a Comment
Report names commonly used TLDs for phishing attacks
· Policy & LawInterisle's annual report dives into registries and registrars that provide domains to phishers. Internet security and cybercrime research company Interisle has released its Phishing Landscape 2025 report, an annual study of phishing. The study, ... Continue ReadingLeave a Comment
ICANN warns that DNS abuse rankings vary widely depending on blocklist source
· Policy & LawAbuse rankings shift dramatically between open source and commercial blocklists, exposing blind spots in DNS monitoring. Many research organizations publish lists of top level domains and domain registrars that they claim have high rates of abuse. ... Continue ReadingLeave a Comment
ICANN study links low-cost, automated registrations to phishing abuse
· Policy & LawStudy shows reactive takedowns have little impact on deterring phishing. An ICANN-funded study has identified which registrar practices are most associated with phishing-related domain name abuse. Unsurprisingly, registration cost is one of the ... Continue ReadingLeave a Comment
New DNS abuse mitigation requirements coming for domain name registrars and registries
· Policy & LawRules will make it easier for people to submit reports and (loosely) define what registrars and registries must do in response. ICANN's contracted parties have approved changes to the 2013 Registrar Accreditation Agreement (RAA) and base Registry ... Continue Reading2 Comments
ICANN to EU: Hey, you passed GDPR
· Policy & LawICANN notes that GDPR makes it harder to snuff out DNS abuse. ICANN has sent tardy commentary to the Call for Evidence launched by the European Commission (EC) on the European Union's (EU) Toolbox Against Counterfeiting (wow, that's a ... Continue Reading1 Comment
Both sides of DNS abuse – DNW Podcast #383
· PodcastsA look at both side of the equation. No one listening to this podcast wants people to use domain names and websites for scams, spam, and spreading malware. But who should be responsible for policing this? How much effort should domain registrars ... Continue ReadingLeave a Comment
The innocent victims of DNS abuse complaints
· Policy & LawIt's easy to advocate for fast takedowns, but that can hurt legitimate businesses. On February 20, 2020, Domain Name Wire was down. Anyone who operates a website knows that horrible feeling of finding out your site is down and not being able to ... Continue Reading6 Comments
EU ccTLD operators call DNS abuse study “misleading”
· Policy & LawGroup of country code operators questions the EU's study of DNS abuse. Yesterday, I wrote about the ICANN Business Constituency's response to the European Union's study on DNS Abuse. Today, we heard from European country code domain operators, ... Continue ReadingLeave a Comment
Business Constituency weighs in on DNS abuse
· Policy & LawGroup responds to recent EU request. I've been writing a lot about DNS abuse lately. Everyone other than criminals is opposed to DNS abuse, but there's significant debate about what constitutes abuse and what role various groups should play in ... Continue ReadingLeave a Comment







