Abused
The anatomy of bulletproof hosting – past, present, future
Few cybercrime enablers are as crucial and notorious as bulletproof hosting. However, despite its importance, reporting is often domineered by sensationalism and tabloid-style “infotainment.” For those seeking more prosaic coverage on this ...
Traffic Distribution System (TDS) abuse – What’s hiding behind the veil?
Those who follow the DNS abuse landscape closely may have noticed a rise in activity and abuse reports related to TDS. The use of this infrastructure for malicious purposes is becoming increasingly ...
Bad sushi: China-nexus phishers shift to residential proxies
Earlier this year, Spamhaus researchers observed a major shift in phishing targeting Japan. Starting in April, a China-nexus threat actor began using residential proxy networks to send phishing emails instead of subnets ...
Lifting the lid on a long-time operating Brazilian malware gang
For over 8 years, our researchers have been tracking an operation that targets Brazilian internet users, and is focused on stealing their banking credentials, withdrawing funds from its victim’s accounts. Here’s a ...
Domain registries – are you experiencing the Freenom Effect?
Freenom’s doors have been firmly shut to new domain registrations, for almost three months. The latest Spamhaus domain data suggests, those registries that operate TLDs at the lower end of the pricing ...
Understanding top-level domain (TLD) abuse helps illuminate and predict domain threat trends
The Domain Name System (DNS) is the backbone of the internet, enabling agile communication between internet entities. This blog post will focus on top-level domains (TLD), and how they can impact the ...
There’s no such thing as a “free” app!
Downloading a free application and installing it on an internet-connected device can lead to you not being able to send email. This is because some apps allow third parties to access your ...
Let’s talk about the danger of residential proxy networks
In our experience, residential proxies are an often overlooked security threat; one that can be very difficult to remediate for the end user who -in our experience- is entirely unaware of its ...
XYZ discusses industry collaboration to ban bad actors
XYZ Registry explains how the lack of visibility into a bad actor's domain causes issues and provides suggestions to overcome this problem ...
Getting the low-down from XYZ Registry on combating domain abuse
We've been reaching out to registries for their views and opinions on combating internet abuse for this blog post series. Recently we had an in-depth conversation with XYZ on their approach to ...

