New CSC Research Finds Over 90% of Websites Linked to Donald Trump and Joe Biden Campaigns at Risk for Potential Redirection, Disinformation, and Data Theft
8.10.2020 13:00:00 EEST | Business Wire | Press release
CSC, a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division that reveals areas of risk for prominent election-related websites. The research indicates that web domains closely linked to the campaign websites for Joe Biden and Donald Trump lack basic domain security protocols and are being targeted for disinformation activities such as domain spoofing, and threats including domain name and domain name system (DNS) hijacking, and phishing.
On the heels of its recent Forbes Global 2000 research, CSC is seeing major risks related to the manipulation of web properties that voters rely on for information and donations. Findings show that over 90% of these web properties are not using registry locks to protect their domains from domain and DNS hijacking that can lead to phishing attacks, network breaches, and email compromise.
“As noted in our previous research, we’ve consistently seen domains emerge as a threat vector for enterprises, and an area that is continuously overlooked in cyber security. Due to the sensitivity and importance of the U.S. election process, domain security remains a major vulnerability for the potential of foreign interference, fraud, and misinformation,” says Mark Calandra, executive vice president for CSC DBS. “As an organization with the most visibility into the domain landscape, we advocate for the sanctity of voter trust and encourage both presidential candidates and other websites in the electoral ecosystem to prioritize domain security on their websites to ensure security and build confidence.”
"We have reached the point where awareness is not enough. Those responsible for managing domain registrations, including registrars and hosting companies, need to have an actionable plan that is aligned with best practices. Additionally, experiences must be shared between those within the industry for the good of the wider internet community," said Matthew Stith, industry liaison at Spamhaus. “Without this commitment, users will be open to continued manipulation and fraud."
In April of 2020 when domain names were at the center of many COVID-19 related fraud schemes, Senators Mazie K. Hirono (D-Hawaii), Cory Booker (D-N.J.), and Maggie Hassan (D-N.H.) called on domain name registrars and hosting sites to combat scams and misinformation. CSC’s research shows that domain security and preventing domain spoofing continue to be an oversight even with top election-related web properties. Our research shows that more than 75% of these election-related domains are using retail-grade domain registrars, which do not provide advanced security protocols.
Our research also showed that, of the typo domains related to joebiden.com and donaldjtrump.com, 60% are still available for registration, thereby posing future threats. Additionally, more than a third of those presidential candidate typo domains are linked to third parties; of that one third, nearly 70%:
- Are configured to send and receive emails, which can be used to lure donors to phishing sites
- Were registered in 2020 leading up to the November election
- Disguise the owner’s identity behind proxy or privacy services
With cyber criminals subverting activities on these websites to disseminate misinformation or commit fraud against web visitors, there is also the threat of ransomware. Simon Chassar, chief revenue officer at NTT Ltd.’s Security division states, "NTT's September Monthly Threat Report identified ransomware as a significant threat to the U.S. election infrastructure. With DNS, domains, and email being a potential vehicle to distribute malicious content, our NTT Ltd. Security division suggests focus in this area, ensuring it is secure by design."
For additional details on these findings, visit the CSC blog “U.S. Election-Related Web Properties Prone to Fraud and Misinformation Due to Lack of Domain Security.”
Note: CSC aggregated this data using SimilarWeb.com for the period of August 1 – August 30, 2020.
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20201008005203/en/
Contact information
For more information:
Christine Blake
W2 Communications
703-877-8114
CSC@w2comm.com
CSC® News Room
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Microsoft Takes Sisvel Wi-Fi Multimode Patent Pool Licence30.6.2026 11:17:00 EEST | Press release
Microsoft has become a licensee of the Sisvel Wi-Fi Multimode pool. The US computer and software giant is the latest in a string of major companies to take a licence to the standard essential patents offered through the programme. In doing so, it joins ASUS, Hewlett Packard Enterprise and Sony Group Corporation, as well as Huawei, Panasonic, Philips and ZTE which are also pool licensors alongside KPN, Mitsubishi Electric, Orange, Aegis 11 (a Sisvel affiliate), SK Telecom and Wilus. The Sisvel Wi-Fi Multimode pool covers both Wi-Fi 6 and Wi-Fi 7 and offers an efficient way to access essential Wi-Fi rights for years to come. It was publicly launched in January 2026 as the successor to the Sisvel Wi-Fi 6 patent pool. Over a three-year period under that programme, agreements were closed with 40 companies, including Acer, Netgear, Cisco and HP. “It is a pleasure to welcome Microsoft as a licensee of the Sisvel Wi-Fi Multimode pool,” says Alex Debski, Director of Licensing and Counsel Legal
STOKR Secures CASP and PI Licences in Luxembourg Ahead of MiCAR Deadline30.6.2026 11:00:00 EEST | Press release
STOKR, the Luxembourg-based digital securities platform, has received authorisation from the Commission de Surveillance du Secteur Financier (CSSF) under the EU's Markets in Crypto-Assets Regulation (MiCAR) and the Law of 10 November 2009 on payment services, securing its Crypto-Asset Service Provider (CASP) and Payment Institution (PI) licences just over a week before MiCAR's 1 July 2026 enforcement deadline. Digital securities fall outside MiCAR's scope but the payment leg does not. To receive, hold, and transfer crypto assets and stablecoins on behalf of clients during subscription and redemption, a platform requires a CASP licence under MiCAR and a PI. Without both, a platform can issue digital securities but cannot move the capital. With MiCAR's transitional period ending on 30 June 2026, a significant number crypto-asset providers across Europe are still awaiting the authorisation they need to keep operating in the EU, and many face suspending services. The authorisation grants S
NHOA Energy Awarded Culcairn Battery Contract by Neoen in Australia30.6.2026 10:06:00 EEST | Press release
NHOA Energy, global provider of utility-scale energy storage systems, has been awarded notice-to-proceed by Neoen, one of the world’s leading renewable energy companies, on the latter’s Culcairn Battery, a 215 MW / 963 MWh project to be installed in New South Wales (NSW), Australia. The project will be delivered under an EPC contract in partnership with a joint venture between Equans Solar & Storage and Bouygues Construction Australia and marks a significant new milestone in the long-standing partnership between Neoen and NHOA Energy in Australia. The announcement follows the successful delivery of work by NHOA Energy on Neoen’s 238.5 MW / 477 MWh Blyth Battery in South Australia, in operation since early 2025, and reaffirms NHOA Energy’s leading role in the growth of large-scale energy storage infrastructure in Australia. The Culcairn Battery will be a landmark hybrid plant, comprising an AC-coupled battery energy storage system (BESS) integrated ‘behind-the-meter’ at Neoen’s existing
Ampowr and Indonesia's Ministry of Villages Sign Agreement to Electrify Communities Without Reliable Power30.6.2026 10:00:00 EEST | Press release
Ampowr has signed a Memorandum of Understanding with Indonesia's Ministry of Villages and Development of Disadvantaged Regions (Kemendes PDT) to bring reliable, clean electricity to villages with little or no power. The agreement was signed in Jakarta by Secretary General Taufik Madjid and Ampowr's Indonesian entity, PT Ampowr IES Indonesia, building on the company's existing sales presence in the city. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260630616370/en/ Secretary General (Sekjen) of the Ministry of Villages and Development of Disadvantaged Regions (Kemendes PDT), Taufik Madjid, signed a Memorandum of Understanding with Ampowr Co-CEO, Eric van Honk. Indonesia has 75,266 villages, according to the Ministry. Thousands still lack electricity, and many that are connected receive power for only part of the day, in some cases as little as eight hours. The MoU proves the feasibility of solar photovoltaic (PV), battery e
FPT Achieves SAP® Silver Partner Status in the SAP® PartnerEdge® Program, Expanding SAP Capabilities for European Enterprises30.6.2026 09:00:00 EEST | Press release
FPT announced today that it has achieved SAP silver partner status in the SAP® PartnerEdge® program, recognizing the company's proven customer success, differentiated SAP offerings, and ongoing commitment to SAP certifications. The recognition reflects FPT's growing presence in Europe for SAP technology ecosystems and its experience supporting leading enterprises, including E.ON, RWE, and IONITY, across SAP transformation, application management, and integration initiatives. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260629805729/en/ Through its SAP practice in Europe, FPT provides organizations with comprehensive SAP capabilities designed to support business transformation and maximize the value of their SAP investments, including: End-to-end SAP services spanning consulting, implementation, integration, migration, optimization, application management, and managed services. SAP software licensing and lifecycle support,
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
