New CSC Research Finds Over 90% of Websites Linked to Donald Trump and Joe Biden Campaigns at Risk for Potential Redirection, Disinformation, and Data Theft
CSC, a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division that reveals areas of risk for prominent election-related websites. The research indicates that web domains closely linked to the campaign websites for Joe Biden and Donald Trump lack basic domain security protocols and are being targeted for disinformation activities such as domain spoofing, and threats including domain name and domain name system (DNS) hijacking, and phishing.
On the heels of its recent Forbes Global 2000 research, CSC is seeing major risks related to the manipulation of web properties that voters rely on for information and donations. Findings show that over 90% of these web properties are not using registry locks to protect their domains from domain and DNS hijacking that can lead to phishing attacks, network breaches, and email compromise.
“As noted in our previous research, we’ve consistently seen domains emerge as a threat vector for enterprises, and an area that is continuously overlooked in cyber security. Due to the sensitivity and importance of the U.S. election process, domain security remains a major vulnerability for the potential of foreign interference, fraud, and misinformation,” says Mark Calandra, executive vice president for CSC DBS. “As an organization with the most visibility into the domain landscape, we advocate for the sanctity of voter trust and encourage both presidential candidates and other websites in the electoral ecosystem to prioritize domain security on their websites to ensure security and build confidence.”
"We have reached the point where awareness is not enough. Those responsible for managing domain registrations, including registrars and hosting companies, need to have an actionable plan that is aligned with best practices. Additionally, experiences must be shared between those within the industry for the good of the wider internet community," said Matthew Stith, industry liaison at Spamhaus. “Without this commitment, users will be open to continued manipulation and fraud."
In April of 2020 when domain names were at the center of many COVID-19 related fraud schemes, Senators Mazie K. Hirono (D-Hawaii), Cory Booker (D-N.J.), and Maggie Hassan (D-N.H.) called on domain name registrars and hosting sites to combat scams and misinformation. CSC’s research shows that domain security and preventing domain spoofing continue to be an oversight even with top election-related web properties. Our research shows that more than 75% of these election-related domains are using retail-grade domain registrars, which do not provide advanced security protocols.
Our research also showed that, of the typo domains related to joebiden.com and donaldjtrump.com, 60% are still available for registration, thereby posing future threats. Additionally, more than a third of those presidential candidate typo domains are linked to third parties; of that one third, nearly 70%:
- Are configured to send and receive emails, which can be used to lure donors to phishing sites
- Were registered in 2020 leading up to the November election
- Disguise the owner’s identity behind proxy or privacy services
With cyber criminals subverting activities on these websites to disseminate misinformation or commit fraud against web visitors, there is also the threat of ransomware. Simon Chassar, chief revenue officer at NTT Ltd.’s Security division states, "NTT's September Monthly Threat Report identified ransomware as a significant threat to the U.S. election infrastructure. With DNS, domains, and email being a potential vehicle to distribute malicious content, our NTT Ltd. Security division suggests focus in this area, ensuring it is secure by design."
For additional details on these findings, visit the CSC blog “U.S. Election-Related Web Properties Prone to Fraud and Misinformation Due to Lack of Domain Security.”
Note: CSC aggregated this data using SimilarWeb.com for the period of August 1 – August 30, 2020.
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20201008005203/en/
Contact information
For more information:
Christine Blake
W2 Communications
703-877-8114
CSC@w2comm.com
CSC® News Room
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Red Sea Global Announces the Opening of AMAALA: The World’s New Coastal Lifestyle Destination11.11.2025 17:30:00 EET | Press release
Red Sea Global (RSG), the real estate developer and pioneer of regenerative tourism, announced the highly anticipated opening of AMAALA Triple Bay during the inaugural TOURISE Summit. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251111682859/en/ Sea meets land: The world class AMAALA Triple Bay Marina Yacht Club on the Saudi Red Sea coastline Nestled across three naturally occurring bays on Saudi Arabia’s rugged north-western coast where the Hijaz Mountains meet the Red Sea, the ultra-luxury, wellness destination is set to open in the coming months. “Deriving from the Arabic word for hope, AMAALA offers a new coastal lifestyle rooted in wellness right here in Saudi Arabia. Guests and residents are invited to discover and honor what it means for them to live longer, better, whether that be serene retreats or sea and sun-soaked adventures. Proceeding directly from timeless Saudi traditions of retreat, renewal and connection,
Xsolla and Airbridge Partner to Deliver Unified Mobile and Web Performance Insights for Game Developers11.11.2025 16:36:00 EET | Press release
Xsolla, a global commerce company helping developers launch, grow, and monetize their games, today announced a new mobile-focused Server-to-Server (S2S) integration with Airbridge, a leading unified measurement platform for mobile marketers. This strategic partnership empowers mobile game developers with precise, cross-platform performance tracking by bridging the gap between mobile marketing efforts and purchases made through the Xsolla Web Shop. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251111170674/en/ (Graphic: Xsolla) As more developers turn to Web Shops to drive direct-to-consumer monetization beyond traditional app stores, understanding the full value of those off-platform transactions has become increasingly critical. With Xsolla’s new S2S integration, powered by Airbridge, developers can now gain a complete and accurate view of campaign performance, attributing web purchases as in-app events and revealing valid
Andersen Consulting Strengthens Digital Transformation Offering Through Collaboration with VaporVM11.11.2025 16:30:00 EET | Press release
Andersen Consulting expands its digital transformation and cybersecurity capabilities with the addition of collaborating firm VaporVM, a cloud-native technology firm headquartered in Dubai. Founded in 2017, VaporVM helps global enterprises navigate digital transformation through integrated cloud services, DevOps, cybersecurity, data science, and application modernization. With a focus on scalability and speed-to-market, the firm works with Fortune 500 companies and leverages their domain expertise and automation to streamline IT operations and accelerate digital outcomes. “At VaporVM, we are dedicated to helping businesses not only adopt new technologies but also reimagine what’s possible when those technologies are harnessed to drive real transformation,” said Aqeel Asim, CEO and founder of VaporVM. “Our collaboration with Andersen Consulting allows us to amplify that mission on a global scale—bringing our cloud, cybersecurity, and digital transformation expertise to new markets, and
ThreatDown Launches Nexus Partner Program, Strengthening its Channel-First Commitment11.11.2025 16:02:00 EET | Press release
ThreatDown, the corporate business unit of Malwarebytes, today announced the launch of the Nexus Partner Program, a comprehensive initiative that puts partners at the center by strengthening collaboration and creating new growth opportunities for its global network of partners. The program aligns incentives, simplifies enablement, and strengthens collaboration to ensure every reseller has the resources and support needed to deliver smarter, stronger security outcomes for customers. “At ThreatDown, being channel-first means putting our partners at the center of everything we do,” says Kendra Krause, General Manager of ThreatDown. “The Nexus Partner Program reflects that belief – the program is built to equip partners with the tools they need to succeed in a rapidly evolving cybersecurity market. When our partners win, we win.” Available globally, the program offers competitive discounts, revenue protection, marketing resources, and technical support. Unified under a single framework tha
Blue Matter Enhances Twine ™ Platform Capabilities in Response to Growing Demand11.11.2025 16:01:00 EET | Press release
Blue Matter today announced the expansion of its Twine™ data platform’s capabilities in response to accelerating demand from biopharma companies. Enhancements include thoughtful use of artificial intelligence (AI) for advanced analytics and narratives, expanded data source integrations, master data management, and broader deployment across oncology and specialty therapeutic areas. Twine™ is Blue Matter's purpose-built customer intelligence platform for healthcare and life sciences companies. It transforms complex data from disparate sources including specialty pharmacy networks, hub services, claims databases, and other third party data sources into actionable insights that drive commercial strategy and operational excellence. With generative AI at its core, Twine helps companies more effectively acquire, master, validate, and analyze data from internal and third-party sources. Persona-specific outputs enable faster, more informed decision-making. According to Deepak Gopinath, Partner
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
