Business Wire

 Domain Security Blind Spots Put Global Enterprises at Serious Risk According to New Research from CSC’s Digital Brand Services Division

Share

CSC, a world leader in business, legal, tax, and domain security, today released its 2020 Domain Security Report: Forbes Global 2000 Companies from their Digital Brand Services (DBS) division. The report highlights significant shortfalls in enterprise domain security practices, putting organizations’ internet-facing digital assets at risk to threats, including domain name and domain name system (DNS) hijacking, phishing, and other fraudulent activity.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20200616005062/en/

To view this piece of content from mms.businesswire.com, please give your consent at the top of this page.

Key Findings from CSC's 2020 Domain Security Report.

According to the report, 83% of Global 2000 organizations have not adopted basic domain security measures such as registry lock, which puts them at risk for domain name hijacking. The report indicates a wide industry disparity in domain security maturity with information technology and media and entertainment industries more likely to embrace available security controls, while industries such as materials and real estate trail behind.

“These security shortfalls are the direct result of not executing proper domain security techniques. Domain security cannot be an afterthought, and there needs to be a conscious effort to make this an intentional and critical part of every company’s overall cyber security posture, especially as criminals evolve their attack methods,” says Mark Calandra, executive vice president for CSC DBS. “As companies move to more online business models, it’s essential to use defense-in-depth practices to proactively manage, secure, and defend the foundational internet-facing components of your digital brand presence.”

Additional highlights from the report include:

  • Four out of five Global 2000 companies are severely at risk and exposed to domain name and DNS hijacking due to a lack of registry locks. Unlocked domains are vulnerable to social engineering tactics, which can lead to unauthorized DNS changes and domain name hijacking.
  • 53% of the Forbes Global 2000 use retail-grade domain registrars, putting them at greater risk for phishing, social engineering, and attacks while complicating compliance demands. The management of the overall domain name portfolio by a reputable corporate registrar versus a retail registrar will make the adoption of domain security standards much easier to implement and monitor.
  • Only 20% of Global 2000 companies use enterprise-grade DNS hosting. Lack of DNS hosting redundancy and using non-enterprise-level DNS providers poses potential security threats like resiliency to distributed denial of service (DDoS) attacks, as well as down time, and revenue loss.
  • 97% of the Global 2000 don’t use DNS security extensions (DNSSEC), which means the majority of companies are prone to cache poisoning attacks. Lack of deployment of DNSSEC leads to vulnerabilities in the DNS, which could include an attacker hijacking any step of the DNS lookup process.
  • Domain-based message authentication, reporting, and conformance (DMARC) use is only at 39% for the Global 2000 companies. DMARC is an email validation system designed to protect a company’s email domain from being used for email spoofing, phishing scams, and other cyber crime.

A core division of CSC, DBS is the trusted provider of choice for the Forbes Global 2000 and is the only enterprise-class registrar with a comprehensive set of solutions focused on defending businesses from targeted threat vectors to their domain names, DNS, and digital certificates. Moreover, the organization detects and mitigates online brand abuse, infringements, and fraud with the latest machine analysis and scoring technology to perform global enforcement, including takedowns and advanced techniques in internet blocking.

If you’re a member of SANS, to learn more, join CSC and SANS for a webinar Friday, June 19. Register here.

External links:

About CSC

CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Christine Blake
W2 Communications
703-877-8114
CSC@w2comm.com
CSC® News Room

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

EURONICS and NIQ Forge Strategic Collaboration to Elevate Retail Pricing Intelligence9.12.2025 10:00:00 EET | Press release

NIQ (NYSE: NIQ), a leading consumer intelligence company combined with GfK in 2023, has been selected by EURONICS, a leading global shopping cooperative in the Technical Consumer Goods (TCG) sector, to provide comprehensive Online Price Monitoring. NIQ's Online Price Monitoring provides insights into pricing dynamics by tracking item-level pricing across a defined data set. The system captures product information, matches items accurately, and ensures quality through advanced automated processes combined with human oversight and detailed checks. NIQ offers a range of retail pricing solutions, including pricing intelligence tools and the Consumer Price Lab, empowering businesses to make informed decisions and optimize their pricing strategies. This collaboration focuses on providing EURONICS with comprehensive pricing insights to support informed decision-making. NIQ delivers accurate and transparent data to help EURONICS understand market dynamics and plan effectively. "Through our col

SonicEdge and Earfab Partner to Shape the Future of Personalized Audio and Hearing Wellness9.12.2025 10:00:00 EET | Press release

SonicEdge, a pioneer in micro-acoustic innovation, today announced a strategic partnership with Earfab, the innovator of custom-fit hearing technology, to co-develop a new generation of personalized audio solutions that unite comfort, precision, and hearing safety. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251209472421/en/ Credit: SonicEdge By combining SonicEdge’s high-performance MEMS speaker-in-chip technology with Earfab’s custom-fit eartips – crafted using its proprietary earfabSCAN 3D smartphone scanning platform – the collaboration delivers a first-of-its-kind experience that redefines in-ear performance. The joint solution provides a perfect acoustic seal for enhanced sound fidelity, improved active noise cancellation, and long-term listening comfort – without compromising hearing health. “At SonicEdge, we believe that better sound should also mean better well-being,” said Moti Margalit, CEO of SonicEdge. “By in

Outpost24 Acquires Infinipoint to Power Its Entry into the Zero Trust Workforce Access Market9.12.2025 09:00:00 EET | Press release

Outpost24, a leader in exposure management and identity security, today announced the acquisition of Infinipoint, a specialist in device identity, posture validation, and secure workforce access. The acquisition marks Outpost24’s entry into the Zero Trust Workforce Access market and enhances its identity security division, Specops, by laying the foundation for a unified approach that evaluates both the user and the device before access is granted. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251208750630/en/ Ido Erlichman, Chief Executive Officer of Outpost24. As organizations advance their Zero Trust strategies, authentication alone is no longer enough. MFA and SSO confirm who the user is, but they do not validate the security of the device being used. In hybrid environments where employees, contractors, and partners rely on a mix of corporate and unmanaged devices, this gap has become a significant source of risk. Ensuri

VSO Submits VCP v1.0 to Nineteen Regulatory Authorities Across Thirteen Jurisdictions and Completes First Integrated Evaluation in a Production-Like Environment9.12.2025 09:00:00 EET | Press release

The VeritasChain Standards Organization (VSO) announced today that it has submitted the VeritasChain Protocol (VCP) v1.0 to nineteen regulatory authorities across thirteen jurisdictions, including the United States, United Kingdom, European Union, Singapore, Hong Kong, United Arab Emirates (DIFC), Australia, India, South Korea, Switzerland, Brazil, Liechtenstein, and Saudi Arabia. The submissions present VCP v1.0 as a cryptographic audit framework designed to address emerging supervisory requirements under the EU AI Act Article 12 for logging and traceability, and MiFID II / RTS 25 for timestamp integrity and event ordering in AI-driven and algorithmic trading systems. VSO also confirmed the first completed integration of VCP v1.0 within a controlled, production-like evaluation environment operating under its Early Access Program. The environment successfully generated cryptographically linked event chains, immutable hashing, and verifiable proofs using RFC-aligned structures, demonstr

ENGIE and NHOA Energy Expand Their Partnership in Belgium to Build a New 320 MWh Battery Energy Storage System9.12.2025 09:00:00 EET | Press release

NHOA Energy, global provider of utility-scale energy storage systems, has been awarded by ENGIE the contracts for the Supply, Commissioning and the Long-Term Service of a new 80 MW / 320 MWh Battery Energy Storage System (BESS) to be installed at the site of ENGIE’s Drogenbos power station, near Brussels. The Drogenbos BESS represents ENGIE’s third large-scale battery asset in Belgium and was selected in the country’s fifth Capacity Remuneration Mechanism (CRM) auction, securing a 15-year contract starting in November 2027. Designed to deliver essential flexibility services to the Belgian grid, enabling greater integration of renewable energy and supporting grid stability at national level, the BESS will be based on NHOA Energy’s NHEXUS platform, including 88 battery containers capable of providing up to 4 hours of discharge, corresponding to the average daily electricity demand of over 38,000 households. The project marks a significant new milestone in expanding the collaboration betw

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye