Latest news with #DNS-based


Techday NZ
3 days ago
- Business
- Techday NZ
Akamai launches DNS solution for unified, multicloud security
Akamai Technologies has launched DNS Posture Management, a solution intended to provide unified, multicloud visibility and real-time monitoring for securing DNS infrastructure. The new product is described by Akamai as an agentless platform offering a consolidated view across a range of DNS providers. According to the company, this allows security teams to detect and respond to DNS-based attacks, certificate security risks, vulnerabilities and misconfigurations in real time. DNS is fundamental to network functionality, serving as the protocol for resolving domain names for computers, services, and other resources across the Internet and private IP networks. The critical nature of DNS has also made it a favourite target for cyberattacks such as spoofing, cache poisoning, and rogue certificate abuse. Many large organisations operate multiple DNS systems sourced from a mix of vendors to underpin both their internet and corporate network operations. Akamai notes that this complexity creates ongoing challenges for IT teams, who must keep DNS configurations current and in line with network changes, whilst maintaining proper security and performance settings. Outdated configurations or lapsed certificates can leave organisations exposed to risks, especially as requirements for post-quantum compliance increase. Security teams also contend with a high volume of alerts and complicated compliance obligations, which, if managed manually, risk allowing major issues to slip through unnoticed. Akamai asserts that automating compliance assessments and integrating these findings into incident management is now critical to efficient security processes. "DNS security often flies under the radar, but it's vital in keeping businesses secure and running smoothly," said Sean Lyons, SVP and General Manager, Infrastructure Security Solutions & Services, Akamai. "For many organisations, the challenge isn't setting up DNS - it's knowing whether all their systems are actually properly configured and secured. Those organisations really need a simple way to see what's happening across their DNS environment to take action quickly. That's the problem we're solving with DNS Posture Management. Security practitioners get a clear, unified view that helps them identify priority issues early, stay compliant, and keep their networks performing at their best." Akamai highlights that misconfigurations and known DNS vulnerabilities are common, potentially undermining uptime and reliability. Such issues also increase susceptibility to serious threats including unauthorised SSL/TLS certificate issuance, DNS spoofing, and cache poisoning. Attackers could exploit these weaknesses to create forged websites that mimic a company's branding for activities such as phishing, fraud, or data theft. In some cases, they may be able to render DNS servers inoperable, resulting in service outages for both the business and its customers. Continuous compliance monitoring is cited by Akamai as necessary to address these risks, especially given expanding regulatory expectations for DNS and certificate management. DNS Posture Management automates compliance checks aligned with standards such as NIST, PCI DSS, and HIPAA, aiming to simplify the process and reduce costs for enterprise users. The solution integrates a Certificate Monitor, designed to catalogue digital certificates by their associated domains and highlight security issues such as expired, misconfigured, or unauthorised certificates. An HTTP posture analysis capability is also included to assess domains utilising these certificates. DNS Posture Management supports coverage across major cloud and DNS providers, including Akamai Cloud, AWS, Microsoft Azure, and Google Cloud Platform. The product is positioned as a unified dashboard where security teams can view zones, domains, subdomains, and records in one place. An additional Managed Security Service is available from Akamai, intended to augment internal resources with continual global security expertise, which the company says is designed to help organisations maximise the benefits of DNS Posture Management.


Associated Press
28-01-2025
- Business
- Associated Press
Cyware Launches Industry's First Pre-Configured Threat Intelligence Platform with Team Cymru
Cyware, the leading provider of threat intelligence management, low-code/no-code security automation, and cyber fusion solutions, today announced an important collaboration with Team Cymru to pre-configure Team Cymru's industry-leading threat feeds into Cyware's Threat Intelligence Platform (TIP). This packaged solution delivers real-time visibility into botnets, malware, command and control (C2) infrastructure, and external malicious activity, empowering organizations to detect and respond faster to even the most sophisticated adversaries. By incorporating Team Cymru's threat feeds—including the Botnet Analysis and Reporting Service (BARS) feed and the Controller (C2) Feed—into Cyware's advanced TIP, organizations gain access to more accurate and up-to-date intelligence. This enhanced intelligence is designed to allow security teams to identify, analyze, and mitigate malware and botnets with precision and speed to help fortify their defenses against cyberattacks. 'Real-time, actionable intelligence is crucial for effective cybersecurity operations,' said Sachin Jade, Chief Product Officer at Cyware. 'By offering Team Cymru's unparalleled threat feeds into Cyware's advanced TIP, we are equipping organizations with a consolidated robust platform and insights they need to proactively identify and neutralize threats faster and more cost-effectively—making what would take security teams months to build and implement down to days.' With this solution, customers benefit from approximately 10,000 unique IPs daily and the processing of approximately 6-7 million unique events, providing detailed threat indicators and attributes that are often missing in traditional threat feeds. When combined with Cyware's operationalized threat intelligence capabilities, it is designed to enable security teams to: Stop malware and DDoS attacks before they impact networks and infrastructure Harden network defenses by integrating threat indicators with firewalls, intrusion prevention systems (IPS), and intrusion detection systems (IDS) Automate threat hunting for DNS-based attacks and monitor malicious communications Gain geolocation, victimology information, and detailed campaign histories to contextualize threats 'The collaboration between Team Cymru and Cyware represents a significant innovation leap forward in threat intelligence operationalization,' said Jeff Vosburg, President of Team Cymru. 'With this strategic integration, we're helping organizations take a proactive approach to cybersecurity, enabling them to strengthen their defenses against the growing number of adversaries.' The combined solution also offers unique and critical insights into malware families, unique control protocols, and encryption mechanisms, allowing organizations to prioritize and block malicious activity more effectively. With these capabilities, Cyware and Team Cymru are redefining what it means to stay ahead of cyber threats as global adversaries gear up for disruption. For more information on Cyware and Team Cymru's integration, visit About Cyware Cyware delivers an innovative approach to cybersecurity that unifies threat intelligence, automation, threat response, and vulnerability management with data insights gleaned from assets, users, malware, attackers, and vulnerabilities. Cyware's Cyber Fusion platform integrates SOAR and TIP technology, enabling collaboration across siloed security teams. Cyware is widely deployed by enterprises, government agencies, and MSSPs, and is the leading threat-intelligence sharing platform for global ISACs and CERTs. About Team Cymru Team Cymru's mission to Save and Improve Human Lives is fulfilled by empowering security teams around the world to track and disrupt the most sophisticated bad actors and malevolent infrastructures. Powered by the Pure Signal™ platform, the largest source of context-enriched external threat intelligence, our Enterprise and Government customers gain real-time visibility of vulnerabilities and malicious internet activity beyond network borders to proactively close security gaps and accelerate incident response across organizations and third-party ecosystems. Its Community Services provides no-cost threat detection, alerting, DDoS mitigation, and threat intelligence to more than 140 CSIRT teams across 86+ countries. Learn more at Dan Chmielewski Madison Alexander PR 949-231-2965 SOURCE: Cyware Copyright Business Wire 2025. PUB: 01/28/2025 06:00 AM/DISC: 01/28/2025 06:00 AM