Domain Security Blind Spots Put Global Enterprises at Serious Risk According to New Research from CSC’s Digital Brand Services Division
16.6.2020 15:00:00 EEST | Business Wire | Press release
CSC, a world leader in business, legal, tax, and domain security, today released its 2020 Domain Security Report: Forbes Global 2000 Companies from their Digital Brand Services (DBS) division. The report highlights significant shortfalls in enterprise domain security practices, putting organizations’ internet-facing digital assets at risk to threats, including domain name and domain name system (DNS) hijacking, phishing, and other fraudulent activity.
This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20200616005062/en/
Key Findings from CSC's 2020 Domain Security Report.
According to the report, 83% of Global 2000 organizations have not adopted basic domain security measures such as registry lock, which puts them at risk for domain name hijacking. The report indicates a wide industry disparity in domain security maturity with information technology and media and entertainment industries more likely to embrace available security controls, while industries such as materials and real estate trail behind.
“These security shortfalls are the direct result of not executing proper domain security techniques. Domain security cannot be an afterthought, and there needs to be a conscious effort to make this an intentional and critical part of every company’s overall cyber security posture, especially as criminals evolve their attack methods,” says Mark Calandra, executive vice president for CSC DBS. “As companies move to more online business models, it’s essential to use defense-in-depth practices to proactively manage, secure, and defend the foundational internet-facing components of your digital brand presence.”
Additional highlights from the report include:
- Four out of five Global 2000 companies are severely at risk and exposed to domain name and DNS hijacking due to a lack of registry locks. Unlocked domains are vulnerable to social engineering tactics, which can lead to unauthorized DNS changes and domain name hijacking.
- 53% of the Forbes Global 2000 use retail-grade domain registrars, putting them at greater risk for phishing, social engineering, and attacks while complicating compliance demands. The management of the overall domain name portfolio by a reputable corporate registrar versus a retail registrar will make the adoption of domain security standards much easier to implement and monitor.
- Only 20% of Global 2000 companies use enterprise-grade DNS hosting. Lack of DNS hosting redundancy and using non-enterprise-level DNS providers poses potential security threats like resiliency to distributed denial of service (DDoS) attacks, as well as down time, and revenue loss.
- 97% of the Global 2000 don’t use DNS security extensions (DNSSEC), which means the majority of companies are prone to cache poisoning attacks. Lack of deployment of DNSSEC leads to vulnerabilities in the DNS, which could include an attacker hijacking any step of the DNS lookup process.
- Domain-based message authentication, reporting, and conformance (DMARC) use is only at 39% for the Global 2000 companies. DMARC is an email validation system designed to protect a company’s email domain from being used for email spoofing, phishing scams, and other cyber crime.
A core division of CSC, DBS is the trusted provider of choice for the Forbes Global 2000 and is the only enterprise-class registrar with a comprehensive set of solutions focused on defending businesses from targeted threat vectors to their domain names, DNS, and digital certificates. Moreover, the organization detects and mitigates online brand abuse, infringements, and fraud with the latest machine analysis and scoring technology to perform global enforcement, including takedowns and advanced techniques in internet blocking.
If you’re a member of SANS, to learn more, join CSC and SANS for a webinar Friday, June 19. Register here.
External links:
- Download the report here
- Domain Security Report blog post
- Infographic for Domain Security Report
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20200616005062/en/
Contact information
Christine Blake
W2 Communications
703-877-8114
CSC@w2comm.com
CSC® News Room
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
AM Intelligence Expands NVIDIA Vera Rubin AI Factory Buildout in India and Malaysia5.10.2026 21:16:00 EEST | Press release
AM Intelligence (“AMI”), the AI infrastructure platform set up by Promoters of Greenko, today announced two further firm and binding orders for 20,000 NVIDIA Rubin GPUs, to be deployed as NVIDIA Vera Rubin NVL72 rack-scale systems. Building on its first AI factory in Hyderabad, the expansion is designed to give cloud providers, enterprises and AI developers access to large-scale computing capacity closer to where they build and deploy AI. These orders are in addition to the AMI's inaugural commitment announced on August 25, 2026, for 9,000 NVIDIA Rubin GPUs at its first AI Factory in Hyderabad. This follow-on capacity totalling ~70 megawatts (MW) will be deployed at Malaysia and India with delivery scheduled for Q2 2027. Taken together, the three orders bring AMI's committed frontier compute to approximately 29,000 Rubin GPUs and close to 100 MW of capacity, establishing AMI among the earliest and largest committed buyers of Rubin GPUs outside of North America. AMI plans to bring addit
SES Announces Final Results of Its Cash Tender Offer5.10.2026 20:49:00 EEST | Press release
THIS ANNOUNCEMENT RELATES TO THE DISCLOSURE OF INFORMATION THAT QUALIFIED OR MAY HAVE QUALIFIED AS INSIDE INFORMATION WITHIN THE MEANING OF ARTICLE 7(1) OF THE MARKET ABUSE REGULATION (EU) 596/2014. NOT FOR RELEASE, PUBLICATION OR DISTRIBUTION IN OR INTO OR TO ANY PERSON LOCATED OR RESIDENT IN, OR AT ANY ADDRESS IN, THE UNITED STATES OF AMERICA, ITS TERRITORIES AND POSSESSIONS (INCLUDING PUERTO RICO, THE U.S. VIRGIN ISLANDS, GUAM, AMERICAN SAMOA, WAKE ISLAND AND THE NORTHERN MARIANA ISLANDS), ANY STATE OF THE UNITED STATES OF AMERICA OR THE DISTRICT OF COLUMBIA (THE UNITED STATES) OR TO ANY U.S. PERSON (AS DEFINED IN REGULATION S OF THE UNITED STATES SECURITIES ACT OF 1933, AS AMENDED (THE SECURITIES ACT)) OR IN OR INTO ANY JURISDICTION WHERE IT IS UNLAWFUL TO RELEASE, PUBLISH OR DISTRIBUTE THIS ANNOUNCEMENT. SES (the “Offeror”) announces today the final results and pricing of its invitation to holders of its outstanding €500,000,000 0.875 per cent. Guaranteed Notes due 4 November 2027
Cessna Skyhawk Veris Virtual Reality Flight Training Device to Make Show Debut at NBAA-BACE in Las Vegas5.10.2026 18:00:00 EEST | Press release
TRU Simulation + Training Inc., a Textron Inc. (NYSE:TXT) company, and an affiliate of Textron Aviation, announced today its Veris Virtual Reality Flight Training Device (FTD) configured for the Cessna Skyhawk is making its show debut at the 2026 National Business Aviation Association Business Aviation Convention & Exhibition (NBAA-BACE). The show debut builds on momentum from NBAA-BACE 2025, where TRU Simulation announced a purchase agreement with US Aviation Academy for five Cessna Skyhawk Veris devices, with options for additional units. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20261005927782/en/ Cessna Skyhawk Veris Virtual Reality Flight Training Device to make show debut at NBAA-BACE in Las Vegas This year, NBAA-BACE attendees will have the opportunity to experience the Cessna Skyhawk Veris first-hand through live demonstrations at booth #3415 and learn how immersive virtual reality technology can enhance pilot rea
FuzeBox AI Named Founding Co-Author of SPUR Coalition Technical Committee on Verifying AI Content Use5.10.2026 16:00:00 EEST | Press release
FuzeBox AI has been named by the SPUR Coalition, an international nonprofit of 37 news and media organizations, as one of four founding co-authors of its Evidence Profile Technical Committee, adopted Sept. 2, 2026, to draft an evidence profile for SPUR's Content Telemetry standard: a way for publishers to verify AI usage reports without depending on the reporting company's cooperation. Under SPUR's current standard, AI companies self-report their content use. A company that skips reporting leaves no record, and publishers can't check what they do receive. On July 10, 2026, FuzeBox proposed its Verified Provenance Telemetry Standard (VPTS): publishers seed content with detectable markers, then verify their appearance in AI outputs via an auditable ledger, with no change to SPUR's standard. Within 48 hours, three organizations filed related proposals: ProRata on usage magnitude, Encypher CEO Erik Svilich on the verification question FuzeBox raised, and LicenseFoundry on portable proof of
Mary Kay Introduces the K-Beauty Texture Edit5.10.2026 15:02:00 EEST | Press release
Mary Kay Inc.,the iconic beauty giant announced today the launch of the K-Beauty Texture Edit, aspecial-edition skin care collection available while supplies last. The collection builds on the momentum of the company's largest consumer-facing global brand platform, Beauty Is More Beautiful Shared™ which launched in September. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20261005600130/en/ Mary Kay's Special Edition K-Beauty Texture Edit is a trend-forward collection which includes three Korea-made products: the Mary Kay® Melt-In Cleansing Balm, Mary Kay® Snail Gel Face Patches and Mary Kay® Collagen Moisturizing Gel. (Image Credit: Mary Kay Inc.) Inspired by Korea's globally influential skin care and self-care philosophy designed to bring playful textures, innovative ingredients, and elevated beauty experiences, the K-Beauty Texture Editwas designed to resonate with a global cultural beauty movement captivating the next gene
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
