Infoblox Unveils 2025 DNS Threat Landscape Report, Revealing Surge in AI-driven Threats and Maliciou
- Of the 100.8 million newly observed domains, 25.1 percent were classified as malicious or suspicious
- 82 percent of environments contacted malicious adtech domains
SANTA CLARA, Calif., Aug. 04, 2025 (GLOBE NEWSWIRE) -- Infoblox, a leader in cloud networking and security services, today released its 2025 DNS Threat Landscape Report, revealing a dramatic surge in DNS-based cyberthreats and the growing sophistication of adversaries leveraging AI-enabled deepfakes, malicious adtech and evasive domain tactics.
Based on pre-attack telemetry and real-time analysis of DNS queries from thousands of customer environments—with over 70 billion DNS queries per day—the report offers a comprehensive view into how threat actors exploit DNS to deceive users, evade detection and hijack trust.
“This year's findings highlight the many ways in which threat actors are taking advantage of DNS to operate their campaigns, both in terms of registering large volumes of domain names and also leveraging DNS misconfigurations to hijack existing domains and impersonate major brands,” said Dr. Renée Burton, head of Infoblox Threat Intel. “The report exposes the widespread use of traffic distribution systems (TDS) to help disguise these crimes, among other trends security teams must look out for to stay ahead of attackers.”
Since its inception, Infoblox Threat Intel has identified a total of over 660 unique threat actors and more than 204,000 suspicious domain clusters, meaning a group of domains believed to be registered by the same actor. Over the past 12 months, Infoblox researchers have published research covering 10 new actors. They have uncovered the breadth and depth of malicious adtech, which disguises threats from users through TDS, driving industry thought leadership in this topic.
This report brings together findings from the past 12 months to illuminate attack trends, equipping security teams with critical knowledge to keep their edge over bad actors. Particularly, the report sheds light on adtech's role in these attacks.
Top Findings
- Of the 100.8 million newly observed domains in the past year, 25.1 percent were classified as malicious or suspicious.
- 95 percent of threat-related domains were observed in only one customer environment, underscoring the challenges to the security industry to detect and stop threats.
- 82 percent of customer environments queried domains associated with malicious adtech, which rotate a massive number of domains to evade security tools and serve malicious content.
- Nearly 500k traffic distribution system (TDS) domains were seen in the last 12 months within Infoblox networks.
- Daily detection of DNS Tunneling, exfiltration, and command and control, including Cobalt Strike, Sliver, and custom tools, which require ML algorithms to detect.
Uptick in Newly Observed Domains
Infoblox Threat Intel identified 100.8 million newly observed domains, with over 25 percent classified as malicious or suspicious. Over the year, threat actors continuously registered, activated and deployed new domains, often in very large sets through automated registration processes. By increasing their number of domains, threat actors can bypass traditional forensic-based defenses––which are built on a “patient zero” approach to security. This reactive approach relies on detecting and analyzing threats after they have already been used somewhere else in the world. As attackers leverage increasing levels of new infrastructure, this approach becomes ineffective––leaving organizations vulnerable.
Actors are using these domains for an array of malicious purposes, from creating phishing pages to deploying malware through drive-by downloads, to engaging in fraudulent activities and scams, such as fake cryptocurrency investment sites.
The Need for Preemptive Security
These findings underscore a pressing need for organizations to be proactive in the face of AI-equipped attackers. Investing in preemptive security can be the deciding factor in successfully thwarting threat actors. Using predictive threat intelligence, Infoblox's protective DNS solution blocked 82 percent of threat-related queries before their initial impact.
Proactive protection, paired with consistent radar on emerging threats, tips the scales in favor of security teams—allowing them to pull ahead of attackers and interrupt their unlimited supply of domains.
Access the full Infoblox DNS Threat Landscape Report 2025.
For Threat Researchers:
- Learn more about Infoblox Threat Intel Research.
- Talk to us on Mastodon.
- Access our research and indicators on GitHub.
For Security Teams:
- Request a DNS Security Workshop.
- Learn more about Infoblox Threat DefenseTM..
About Infoblox
Infoblox unites networking, security and cloud to form a platform for operations that's as resilient as it is agile. Trusted by 13,000+ customers, including 92 of the Fortune 100, we seamlessly integrate, secure and automate critical network services so businesses can move fast without compromise. Visit infoblox.com, or follow us on LinkedIn.
Media Contact:
Ariel Roop
Head of Global Communications
A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/bbddb35e-4751-4090-a861-7f5084c9cd84
- 银盛支付成功中标建行福建省分行2024年非银收单机构联合拓展商户项目
- 《让文化说话》肩负时代重任彰显时代风貌·李俊森
- NOBLEROYCE罗慕路斯门窗 以精工匠造开启私属人生
- 陈瑶又一新剧《玫瑰的故事》开播,完美演绎精英范儿和知性美
- WS客户基数不足?WhatsApp工具一键解决您的客户数量问题
- 第二十一届“深圳知名品牌”发布,“硅基仿生”成功入选
- 钢板矫平机如何选择?了解这些因素提升加工精度
- 加强质量支撑 共建质量强国 瑞派宠物医院入选2024年全国“质量月”质量诚信倡议企业!
- 徽园:自然艺文新趣场,打造休闲体验空间
- 科技护航 食安无忧 万纬举行合肥肥西冷链园区品牌推介会
- 柑橘橙红丰收喜人:农发行石门县支行为特色产业发展注入金融活水
- 中南集团与固安县政府正式签约 ,共同书写地方经济繁荣的新篇章
- Venture Global开始对Calcasieu Pass设施进行商业运营
- 助力数字经济与实体经济深度融合- “福满中国·数字京行”京彩乐市新春乐购会举办
- Bitget 保护基金在 2025 年 6 月达 7.16 亿美元
- 鱼跃医疗携血糖管理解决方案亮相第二届CATTD
- 那不勒斯青年侨领许曾龙蝉连意大利那不勒斯华商会会长
- 揭密广东美之家新型材料有限公司完美诠释了对时尚与个性的不懈追求
- 中酱黑松露酱油:开启健康美味新篇
- Plasmidsaurus扩大商业规模
- AIT Worldwide Logistics 收购 Global Transport Solutions Group
- Boston Metal Appoints Global Metals Leader Eduardo Bartolomeo to Board of Directors
- 李牧遥助力艺术品变现让企业家服务社会
- 持续加码鸿蒙生态建设! 福昕PDF OpenHarmony SDK正式上线!
- 安博中国发布三大战略愿景,引领资管 3.0时代—— 智慧化、生态化、零碳
- 尚启新程 驰航未来丨2025尚驰集团826全球品牌节盛典圆满成功
- 3K Carbon Fiber Sheet 1000 x 1000mm
- 重启原始记忆,缔造“吉象美”的国际大艺术家
- 中信银行:金融赋能新征程 共筑时代新辉煌
- 三大健美顶级赛事齐聚成都,“不得了系列杯”健康竞技盛宴来袭!
推荐
-
王自如被强制执行3383万 据中国执行信息公开网消息,近期,王自如新增一 资讯
-
国足13次出战亚洲杯首次小组赛0进球 北京时间1月23日消息,2023亚洲杯小组 资讯
-
男子“机闹”后航班取消,同机旅客准备集体起诉 1月4日,一男子大闹飞机致航班取消的新闻登上 资讯
-
一个“江浙沪人家的孩子已经不卷学习了”的新闻引发议论纷纷 星标★ 来源:桌子的生活观(ID:zzdshg) 没 资讯
-
大家一起关注新疆乌什7.1级地震救援见闻 看到热气腾腾的抓饭马上就要出锅、村里大家 资讯
-
新增供热能力3200万平方米 新疆最大热电联产项目开工 昨天(26日),新疆最大的热电联产项目—&md 资讯
-
私域反哺公域一周带火一家店! 三四线城市奶茶品牌茶尖尖两年时间做到GMV 资讯
-
周星驰新片《少林女足》在台湾省举办海选,吸引了不少素人和足球爱好者前来参加 周星驰新片《少林女足》在台湾省举办海选,吸 资讯
-
海南大学生返校机票贵 有什么好的解决办法吗? 近日,有网友在“人民网领导留言板&rdqu 资讯
-
中国减排方案比西方更有优势 如今,人为造成的全球变暖是每个人都关注的问 资讯