DE-CSC
CSC , a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division that reveals areas of risk for prominent election-related websites. The research indicates that web domains closely linked to the campaign websites for Joe Biden and Donald Trump lack basic domain security protocols and are being targeted for disinformation activities such as domain spoofing, and threats including domain name and domain name system (DNS) hijacking, and phishing.
On the heels of its recent Forbes Global 2000 research , CSC is seeing major risks related to the manipulation of web properties that voters rely on for information and donations. Findings show that over 90% of these web properties are not using registry locks to protect their domains from domain and DNS hijacking that can lead to phishing attacks, network breaches, and email compromise.
“As noted in our previous research, we’ve consistently seen domains emerge as a threat vector for enterprises, and an area that is continuously overlooked in cyber security. Due to the sensitivity and importance of the U.S. election process, domain security remains a major vulnerability for the potential of foreign interference, fraud, and misinformation,” says Mark Calandra, executive vice president for CSC DBS. “As an organization with the most visibility into the domain landscape, we advocate for the sanctity of voter trust and encourage both presidential candidates and other websites in the electoral ecosystem to prioritize domain security on their websites to ensure security and build confidence.”
"We have reached the point where awareness is not enough. Those responsible for managing domain registrations, including registrars and hosting companies, need to have an actionable plan that is aligned with best practices. Additionally, experiences must be shared between those within the industry for the good of the wider internet community," said Matthew Stith, industry liaison at Spamhaus. “Without this commitment, users will be open to continued manipulation and fraud."
In April of 2020 when domain names were at the center of many COVID-19 related fraud schemes, Senators Mazie K. Hirono (D-Hawaii), Cory Booker (D-N.J.), and Maggie Hassan (D-N.H.) called on domain name registrars and hosting sites to combat scams and misinformation. CSC’s research shows that domain security and preventing domain spoofing continue to be an oversight even with top election-related web properties. Our research shows that more than 75% of these election-related domains are using retail-grade domain registrars, which do not provide advanced security protocols.
Our research also showed that, of the typo domains related to joebiden.com and donaldjtrump.com , 60% are still available for registration, thereby posing future threats. Additionally, more than a third of those presidential candidate typo domains are linked to third parties; of that one third, nearly 70%:
- Are configured to send and receive emails, which can be used to lure donors to phishing sites
- Were registered in 2020 leading up to the November election
- Disguise the owner’s identity behind proxy or privacy services
With cyber criminals subverting activities on these websites to disseminate misinformation or commit fraud against web visitors, there is also the threat of ransomware. Simon Chassar, chief revenue officer at NTT Ltd.’s Security division states, "NTT's September Monthly Threat Report identified ransomware as a significant threat to the U.S. election infrastructure. With DNS, domains, and email being a potential vehicle to distribute malicious content, our NTT Ltd. Security division suggests focus in this area, ensuring it is secure by design."
For additional details on these findings, visit the CSC blog “U.S. Election-Related Web Properties Prone to Fraud and Misinformation Due to Lack of Domain Security.”
Note: CSC aggregated this data using SimilarWeb.com for the period of August 1 – August 30, 2020.
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com .
View source version on businesswire.com: https://www.businesswire.com/news/home/20201008005203/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Reply Awarded a 2025 AWS Partner of the Year Award3.12.2025 10:00:00 CET | Press release
Reply recognized as winner for EMEA Partner of the Year, Industry Energy & Utilities, one of many AWS Partners around the globe that help their customers drive innovation Reply [EXM, STAR: REY] is pleased to announce it is a recipient of a 2025 Geography and Global AWS Partner Award, recognizing leaders around the globe that are playing key roles in helping their customers drive innovation and build solutions on Amazon Web Services (AWS). Reply has been named the winner of the EMEA Partner of the Year – Industry Energy & Utilities award, which recognizes top AWS Partners with the AWS Energy Competency, which help customers build and implement advanced solutions powered by AWS across the industry value chain. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251203089630/en/ Through its specialized companies — including Airwalk Reply, Comsysto Reply, Data Reply, Sense Reply, and Storm Reply — Reply leverages AWS capabilities to
FiRa Consortium Unveils FiRa Core 4.0 Specifications and Certification Program3.12.2025 10:00:00 CET | Press release
Featuring UL-TDoA, Aliro UWB updates, and expanded certification The FiRa® Consortium announces the release of its Core 4.0 Specifications and Certification Program, notable milestones in ultra-wideband (UWB) technology development. These updates complete the work of IEEE 802.15.4-2024 features to fulfill FiRa-defined use cases. They also enhance FiRa’s capabilities, enabling seamless interoperability and unlocking new possibilities for precise and secure ranging and positioning in diverse applications. Features of the FiRa Core 4.0 Specifications and Certification Program The FiRa Core 4.0 Specifications include updates that support expanded functionality and continued ecosystem growth. UL-TDoA – This feature enables the tracking of assets (UL-TDoA tags) by an infrastructure made of UL-TDoA anchors. The design ensures interoperability between the tags and the infrastructure, which optimizes tag simplicity and power consumption. The flexible design allows easy and customized deployment
Infobip Reports Record Black Friday Interactions as Retailers Accelerate Shift to Richer Customer Experiences3.12.2025 10:00:00 CET | Press release
Black Friday interactions grow by 15% year-on-year, marking a new milestone for Infobip’s global communications platform Infobip, the leading global cloud communications platform for customer engagement, identified a remarkable upswing in its Black Friday messaging traffic, with use of Rich Communication Services (RCS) surging 277% on Black Friday 2025 compared to the previous year. Email also remained a strong channel of choice among both retailers and consumers, showing an impressive 241% year-on-year increase, signaling that promotional and transactional communications continue to drive engagement during shopping peaks. Black Friday is no longer just a single day. The search for attractive deals extends beyond Friday, with consumers from around the globe seeking products, better price offers, and reliable, easy communication channels to connect with their favourite brands. Infobip identified significant increases in interactions not only in North America, but also in other key regio
Ramify Partners with ROYC to Enrich its Private Markets OfferUnder Its Own Brand3.12.2025 10:00:00 CET | Press release
ROYC, the market-leading European B2B platform for sourcing, structuring, and distributing private-market investments, and Ramify, the next-generation private wealth management platform based in France, today announced a strategic collaboration enabling Ramify to broaden its private-markets offering through a curated range of high-quality private-market funds and programs. The partnership enables Ramify to distribute, and scale modern private-markets programs under its own brand. Bringing a curated private-markets program suite to individual investors Through the collaboration, Ramify integrates a selection of highly sought-after, institutional-grade private-markets funds distributed through Luxembourg life-insurance wrappers. These funds can be invested into individually or as part of broader private-markets investment programs, including diversified and single-strategy vehicles across private equity, private credit, infrastructure and real assets - mirroring formats traditionally res
Veeam and HPE Extend Strategic Partnership and Unveil Next-Gen Data Protection to Supercharge Enterprise Resilience3.12.2025 09:10:00 CET | Press release
Strategic Alliance Accelerates Hybrid Cloud Innovation and Eliminates Risk Across Modern Applications Veeam® Software, the #1 global leader by market share in Data Resilience, today announced a bold new chapter in its strategic alliance with HPE. Building on the partnership’s momentum earlier this year, HPE and Veeam are unleashing transformative, integrated solutions designed to empower enterprises with radically simplified data resilience for the modern enterprise. “Trust, resilience, and availability are the new currency of business,” said John Jester, Chief Revenue Officer at Veeam. “Our strengthened partnership with HPE gives customers the agility and confidence to protect, recover, and leverage their data, wherever it resides.” New innovations unveiled by Veeam and HPE include: Protection for HPE Morpheus VM Essentials Software: Veeam’s new native integration plug-in – now in beta with expected general availability in early 2026 – delivers hypervisor-based image-level backup for
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
