Business Wire

DE-CSC

17.11.2020 13:02:04 CET | Business Wire | Press release

Share
Holiday Shopping Warning: Simple Typos Can Lead Consumers and Brands to Online Fraud, Counterfeit Goods, and Cyber Crime

CSC , a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division warning consumers that simple URL typos could lead to significant online fraud, counterfeit goods, and cyber crime during the holiday shopping season. The company identified and analyzed registered domain typos (misspellings) associated with the 10 largest online shopping brands in the world and found that over 70% of the 1,553 registered domain typos appear to be owned by third parties.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20201117005233/en/

According to CSC’s new research , these third-party owned domains receive over five million visitors annually. In addition, 40% of these domains are using domain privacy services to mask or hide their ownership and identity, and close to 48% are configured with MX (mail) records that can be used for phishing and to intercept email. In its blog, CSC offers tips to both brand owners and consumers to protect themselves against fraudulent web properties and content.

A deep dive of the top 100 most visited typo domains shows they are being used in this manner:

  • 38% are pointing to advertising-related and pay-per-click web content, which can be used to spread malware via domain parking services
  • 27% had no live web content, yet 37% were configured to send and receive email with MX records
  • 15% were engaged in affiliate referrals, which means the brand owner could be targeted for unauthorized affiliate activity resulting in loss of revenue
  • 12% were pointing at shopping-related web content, which indicates that consumers could engage with nefarious retailers selling counterfeit goods while brand owners lose revenue
  • 8% were pointing toward malicious web content e.g., malware

During the holiday shopping season, just one hour of downtime can cost a business over $500,000 in lost revenue*. Despite this, many global eCommerce and shopping companies are still lacking basic domain security measures that could prevent this from happening. For instance, only 16% of the top 500 global eCommerce and shopping domains leverage domain name system (DNS) hosting redundancy, which could secure their online presence from a distributed denial of service (DDoS) attacks. In addition, only 18% use registry locks that prevent DNS hijacking attacks that could redirect consumers to alternate websites. Lastly, 40% of retailers do not use enterprise-class domain registrars. This is partially explained by the fact that 40% of the observed domains still rely on retail registrars that typically don’t provide advanced domain security features.

In light of the global pandemic, both consumers and leading brands have embraced online shopping as we head into the 2020 holiday season. As such, we wanted to call attention to how brands and consumers are at increased risk for a multitude of threat vectors associated with online fraud, counterfeits, revenue leakage and many other cyber criminal activities this year,” says Ihab Shraim, chief technology officer for CSC. “As evidenced by the sheer number of mail-in votes in the U.S. election, consumers are looking for safe alternatives to in-person interactions, and it’s important for brands to not only provide those digital channels, but also ensure they are secure from online threat vectors.”

“We’re delighted that companies like CSC are advocating for companies and online brands to put the necessary security protocols in place to protect not only their brand reputation, but their consumers, from online fraud and cyber crime,” says Daniel Eliot, director of Education and Strategic Initiatives at the National Cyber Security Alliance (NCSA). “The NCSA's mission is to educate consumers and businesses about these credible risks, and the importance of using recommended cyber security best practices. CSC’s research is also an important part of advocating for consumers, and showing the pervasive risk of these cyber attacks and fraudulent domains.”

Additional resources:

*gremlin.com/ecommerce-cost-of-downtime/

About CSC

CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system, digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com .

Link:

ClickThru

Social Media:

https://www.facebook.com/CSCSince1899/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Actiphy Inc. Unveils Actiphy ImageReplicator™15.6.2026 17:00:00 CEST | Press release

A Dedicated Tool for Secure Offsite Backup Replication Actiphy Inc., a leading provider of backup, disaster recovery, and virtualization software, today announced the release of Actiphy ImageReplicator, a dedicated replication solution for ActiveImage Protector backup images. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615886945/en/ Actiphy ImageReplicator dashboard displaying centralized replication management, job status, replication history, and retention monitoring across protected backup images. As ransomware attacks, cyber threats, and infrastructure failures continue to grow in frequency and sophistication, organizations need reliable ways to protect backup data from loss, corruption, and unauthorized access. When primary systems are compromised, backup data becomes the final line of defense for maintaining business continuity and ensuring rapid recovery. Organizations increasingly rely on 3-2-1 backup strategie

Andersen Consulting styrker sine tilbud inden for digital transformation og cybersikkerhed med HeadMind Partners15.6.2026 15:47:00 CEST | Pressemeddelelse

Andersen Consulting styrker sin platform gennem en samarbejdsaftale med HeadMind Partners, et førende europæisk konsulenthus med speciale i cybersikkerhed, digital transformation og ai. Med sin unikke kombination af 25 års erhvervserfaring og ekspertise inden for teknologi og data hjælper HeadMind Partners sine klienter – store virksomheder fra både den private og offentlige sektor – med at styrke deres digitale modstandskraft og cybersikkerhed, forbedre deres operationelle effektivitet og opbygge robuste og uafhængige ai-løsninger. Virksomheden har hovedsæde i Paris og opererer i dag i Frankrig og Belgien, hvor den trækker på multidisciplinære teams bestående af 500 cybersikkerhedseksperter, 70 ai-ingeniører og 400 specialister i digital transformation for at levere værdiskabende og friktionsfrie løsninger inden for cybersikkerhed, ai og digital transformation. HeadMind Partners betjener en mangfoldig og velanset kundeportefølje på tværs af industri-, energi- og luksusvaresektoren sam

Energy Dome and SRP to Add Long-Duration Energy Storage Project to the Grid, Expand Google Collaboration15.6.2026 15:30:00 CEST | Press release

The pilot will be part of Google and SRP’s effort to advance new non-lithium-ion long-duration energy storage technologies Energy Dome, a leading provider of innovative capacity solutions for utilities and AI infrastructure, and Salt River Project (SRP), a not-for-profit public power utility serving the greater Phoenix metropolitan area, today announced an agreement to add a 19 megawatt (MW), 10-hour carbon dioxide-based (CO2) battery system to the grid. The project is planned to be co-located on the site of SRP’s Coronado Generating Station (CGS) in St. Johns, Arizona, and it will be developed under a 20-year tolling agreement, with Energy Dome owning and operating the facility and SRP dispatching its output. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615027901/en/ Image: Rendering of Energy Dome’s energy storage system located at the Coronado Generating Station site The project is also part of Google and SRP’s innov

SLB Launches Digital Marketplace to Scale AI and Digital Innovation Across Energy15.6.2026 14:15:00 CEST | Press release

Curated marketplace connects energy professionals, developers and partners to discover, deploy and scale trusted AI agents, domain models and digital applications Global energy technology company SLB (NYSE: SLB) today announced the launch of the SLB Digital Marketplace, a curated digital destination designed to help energy companies rapidly discover and deploy specialized AI agents, domain models, skills, tools, data connectors and digital applications within their existing digital environments. The SLB Digital Marketplace extends the company’s open platform strategy to its Tela™ agentic AI assistant by enabling SLB, partners, independent software vendors (ISVs), developers and customers to bring purpose-built digital capabilities to the energy industry through a single, governed channel. All marketplace offerings are certified against SLB standards for security, interoperability and compatibility before listing. The launch comes as the industry moves toward agentic AI — where software

Thales at Eurosatory 2026: Ready today. Ready tomorrow15.6.2026 14:01:00 CEST | Press release

Thales pavilion (stand C247),Parc des Expositions, Paris Nord Villepinte, FranceMonday 15 to Friday 19 June, 2026. As Eurosatory 2026 opens its doors, Thales is pleased to share with you a complete overview of the announcements that will be made during the first day of this international defense and security show. This document centralises all our news, innovations and partnerships, released on June, 15th, 2026 with direct links to the associated press releases: This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615204020/en/ Thales at Eurosatory 2026: Ready today. Ready tomorrow.Thales unveils new AI-powered training data analytics platform to enhance military training.Thales launches next-generation 70mm laser-guided rocket dedicated for counter-drone operations.Thales unveils next-generation Bushmaster Mulga Utility Variant.Thales launches RapidStriker, a complete system for protection against drones.Renault Group and Thal

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye