DE-CSC
17.11.2020 13:02:04 CET | Business Wire | Press release
CSC , a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division warning consumers that simple URL typos could lead to significant online fraud, counterfeit goods, and cyber crime during the holiday shopping season. The company identified and analyzed registered domain typos (misspellings) associated with the 10 largest online shopping brands in the world and found that over 70% of the 1,553 registered domain typos appear to be owned by third parties.
This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20201117005233/en/
According to CSC’s new research , these third-party owned domains receive over five million visitors annually. In addition, 40% of these domains are using domain privacy services to mask or hide their ownership and identity, and close to 48% are configured with MX (mail) records that can be used for phishing and to intercept email. In its blog, CSC offers tips to both brand owners and consumers to protect themselves against fraudulent web properties and content.
A deep dive of the top 100 most visited typo domains shows they are being used in this manner:
- 38% are pointing to advertising-related and pay-per-click web content, which can be used to spread malware via domain parking services
- 27% had no live web content, yet 37% were configured to send and receive email with MX records
- 15% were engaged in affiliate referrals, which means the brand owner could be targeted for unauthorized affiliate activity resulting in loss of revenue
- 12% were pointing at shopping-related web content, which indicates that consumers could engage with nefarious retailers selling counterfeit goods while brand owners lose revenue
- 8% were pointing toward malicious web content e.g., malware
During the holiday shopping season, just one hour of downtime can cost a business over $500,000 in lost revenue*. Despite this, many global eCommerce and shopping companies are still lacking basic domain security measures that could prevent this from happening. For instance, only 16% of the top 500 global eCommerce and shopping domains leverage domain name system (DNS) hosting redundancy, which could secure their online presence from a distributed denial of service (DDoS) attacks. In addition, only 18% use registry locks that prevent DNS hijacking attacks that could redirect consumers to alternate websites. Lastly, 40% of retailers do not use enterprise-class domain registrars. This is partially explained by the fact that 40% of the observed domains still rely on retail registrars that typically don’t provide advanced domain security features.
“ In light of the global pandemic, both consumers and leading brands have embraced online shopping as we head into the 2020 holiday season. As such, we wanted to call attention to how brands and consumers are at increased risk for a multitude of threat vectors associated with online fraud, counterfeits, revenue leakage and many other cyber criminal activities this year,” says Ihab Shraim, chief technology officer for CSC. “As evidenced by the sheer number of mail-in votes in the U.S. election, consumers are looking for safe alternatives to in-person interactions, and it’s important for brands to not only provide those digital channels, but also ensure they are secure from online threat vectors.”
“We’re delighted that companies like CSC are advocating for companies and online brands to put the necessary security protocols in place to protect not only their brand reputation, but their consumers, from online fraud and cyber crime,” says Daniel Eliot, director of Education and Strategic Initiatives at the National Cyber Security Alliance (NCSA). “The NCSA's mission is to educate consumers and businesses about these credible risks, and the importance of using recommended cyber security best practices. CSC’s research is also an important part of advocating for consumers, and showing the pervasive risk of these cyber attacks and fraudulent domains.”
Additional resources:
- Blog post
- Consumer tips infographic
*gremlin.com/ecommerce-cost-of-downtime/
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system, digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com .
View source version on businesswire.com: https://www.businesswire.com/news/home/20201117005233/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
VerSprite Launches Fork and Knife: AI-Driven Threat Modeling and Adversarial Testing Built for the Speed of Modern Software26.6.2026 23:28:00 CEST | Press release
Powered by the risk-centric PASTA methodology and two decades of accredited offensive security, the integrated platform lets enterprises threat model in a security sprint—then prove the risk through AI-led, human-on-the-loop testing. VerSprite, a global leader in risk-based threat modeling and the firm behind the PASTA (Process for Attack Simulation and Threat Analysis) methodology, today announced the general availability of Fork (www.forktm.com), a continuous application threat modeling platform, alongside Knife, an AI-led, human-on-the-loop adversarial testing platform for web applications and web API endpoints. Together, the two products operationalize a new model for product security—one where applications are securely designed, continuously modeled, and actively tested as part of the build process itself. The launch addresses a problem every security leader knows but few tools have solved: threat modeling is essential, never more so than in an AI-driven era, yet it has remained s
Venture Global Announces Closing of $1.5 Billion Senior Secured Vessel Financing Facility26.6.2026 22:30:00 CEST | Press release
Venture Global, Inc. (NYSE: VG) announced today that its wholly-owned subsidiary, Venture Global Shipping Holdings, LLC (“VGSH”), has entered into a Credit and Guaranty Agreement providing for a senior secured term loan facility (the “Facility”) in an aggregate principal amount of up to $1,500,000,000. The Facility will mature on June 26, 2032. Deutsche Bank and ING acted as coordinating lead arrangers for the Facility. ING also serves as facility agent and security trustee. VGSH intends to use the net proceeds from the Facility for general corporate purposes, including to reimburse Venture Global LNG, Inc. for payments previously made by it or its affiliates in connection with the acquisition of nine LNG carriers, funding certain reserve accounts, and paying transaction fees and expenses. About Venture Global Venture Global is an American producer and exporter of low-cost U.S. liquefied natural gas (“LNG”) with over 100 MTPA of capacity in production, construction, or development. Ven
Andersen Consulting tilføjer House of Code for at styrke teknologi- og dataløsninger26.6.2026 20:01:00 CEST | Pressemeddelelse
Andersen Consulting forstærker sine kompetencer inden for teknologisk transformation gennem en samarbejdsaftale med House of Code, en global virksomhed med hovedkvarter i USA, der specialiserer sig i datadrevne platforme, automatisering og agentbaserede ai-løsninger. House of Code blev stiftet i 2001 og udvikler softwareløsninger samt yder rådgivning til energihandels- og finanssektoren med kunder, der spænder over hedgefonde, kapitalfonde og forsyningsvirksomheder. Virksomheden besidder dyb ekspertise inden for energihandel og risikostyring og hjælper organisationer med systemimplementering, forretningstransformation, dataautomatisering og ai-underbygget modernisering af arbejdsgange. Deres proprietære platform, Enterprise Platform for Integrated Compliance (EPIC), skaber en mere effektiv datastyring, automatiserer rapporteringsprocesser, forbedrer den driftsmæssige gennemsigtighed på tværs af virksomhedssystemer og skaber et fundament for opbygning af intelligente, agentbaserede arbe
Capco Recognized by OpenAI for Innovation and Responsible AI Leadership26.6.2026 20:00:00 CEST | Press release
Receives AI Governance & Risk Excellence Award at OpenAI Partner SummitCapco’s UK AI Lab wins OpenAI Codex Hackathon Global management and technology consultancy Capco, a Wipro company,has been recognized by OpenAI for both AI innovation and responsible AI leadership. Capco received the AI Governance & Risk Excellence Award at the recent OpenAI Partner Summit 2026 in San Francisco, highlighting Capco’s ability to deliver enterprise-grade AI outcomes in highly regulated environments. The award recognizes Capco’s expert advantage when helping financial services and energy organizations to scale AI with confidence, balancing innovation with strong governance to reduce risk, strengthen compliance and improve customer outcomes. This award follows Capco winning the OpenAI Codex Hackathon, where its UK AI Lab competed against more than 30 teams and over 100 participants from across the OpenAI partner ecosystem. Capco's winning entry Sentra – a consulting-led, AI-powered retail banking solutio
Incyte Announces Positive CHMP Opinion for Opzelura® (ruxolitinib) Cream for the Treatment of Adults with Moderate Atopic Dermatitis26.6.2026 13:30:00 CEST | Press release
If approved, Opzelura® (ruxolitinib) cream will be the first steroid-free, topical JAK treatment option in the European Union (EU) for adults with moderate atopic dermatitis (AD) for whom standard topical therapies have failedAD, the most common type of eczema which affects 230 million people globally,1 is a chronic, recurring, inflammatory and highly pruritic (itchy) skin condition that can have a significant impact on daily life2Phase 3 TRuE‑AD4 data supporting the positive CHMP opinion demonstrated that ruxolitinib cream met both co‑primary endpoints at Week 8, maintained disease control with as-needed treatment through Week 24 and was well tolerated3,4,5 Incyte (Nasdaq: INCY) today announced that the Committee for Medicinal Products for Human Use (CHMP) of the European Medicines Agency (EMA) has issued a positive opinion recommending the approval of Opzelura® (ruxolitinib) cream for the treatment of moderate atopic dermatitis (AD) in adult patients for whom topical corticosteroids
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
