New CSC Research Finds Over 90% of Websites Linked to Donald Trump and Joe Biden Campaigns at Risk for Potential Redirection, Disinformation, and Data Theft
8.10.2020 13:00:00 EEST | Business Wire | Press release
CSC, a world leader in business, legal, tax, and domain security, today released new research from their Digital Brand Services (DBS) division that reveals areas of risk for prominent election-related websites. The research indicates that web domains closely linked to the campaign websites for Joe Biden and Donald Trump lack basic domain security protocols and are being targeted for disinformation activities such as domain spoofing, and threats including domain name and domain name system (DNS) hijacking, and phishing.
On the heels of its recent Forbes Global 2000 research, CSC is seeing major risks related to the manipulation of web properties that voters rely on for information and donations. Findings show that over 90% of these web properties are not using registry locks to protect their domains from domain and DNS hijacking that can lead to phishing attacks, network breaches, and email compromise.
“As noted in our previous research, we’ve consistently seen domains emerge as a threat vector for enterprises, and an area that is continuously overlooked in cyber security. Due to the sensitivity and importance of the U.S. election process, domain security remains a major vulnerability for the potential of foreign interference, fraud, and misinformation,” says Mark Calandra, executive vice president for CSC DBS. “As an organization with the most visibility into the domain landscape, we advocate for the sanctity of voter trust and encourage both presidential candidates and other websites in the electoral ecosystem to prioritize domain security on their websites to ensure security and build confidence.”
"We have reached the point where awareness is not enough. Those responsible for managing domain registrations, including registrars and hosting companies, need to have an actionable plan that is aligned with best practices. Additionally, experiences must be shared between those within the industry for the good of the wider internet community," said Matthew Stith, industry liaison at Spamhaus. “Without this commitment, users will be open to continued manipulation and fraud."
In April of 2020 when domain names were at the center of many COVID-19 related fraud schemes, Senators Mazie K. Hirono (D-Hawaii), Cory Booker (D-N.J.), and Maggie Hassan (D-N.H.) called on domain name registrars and hosting sites to combat scams and misinformation. CSC’s research shows that domain security and preventing domain spoofing continue to be an oversight even with top election-related web properties. Our research shows that more than 75% of these election-related domains are using retail-grade domain registrars, which do not provide advanced security protocols.
Our research also showed that, of the typo domains related to joebiden.com and donaldjtrump.com, 60% are still available for registration, thereby posing future threats. Additionally, more than a third of those presidential candidate typo domains are linked to third parties; of that one third, nearly 70%:
- Are configured to send and receive emails, which can be used to lure donors to phishing sites
- Were registered in 2020 leading up to the November election
- Disguise the owner’s identity behind proxy or privacy services
With cyber criminals subverting activities on these websites to disseminate misinformation or commit fraud against web visitors, there is also the threat of ransomware. Simon Chassar, chief revenue officer at NTT Ltd.’s Security division states, "NTT's September Monthly Threat Report identified ransomware as a significant threat to the U.S. election infrastructure. With DNS, domains, and email being a potential vehicle to distribute malicious content, our NTT Ltd. Security division suggests focus in this area, ensuring it is secure by design."
For additional details on these findings, visit the CSC blog “U.S. Election-Related Web Properties Prone to Fraud and Misinformation Due to Lack of Domain Security.”
Note: CSC aggregated this data using SimilarWeb.com for the period of August 1 – August 30, 2020.
About CSC
CSC is the trusted provider of choice for the Forbes Global 2000 and the 100 Best Global Brands® in enterprise domain names, domain name system (DNS), digital certificate management, as well as digital brand and fraud protection. As global companies make significant investments in their security posture, CSC can help them understand known security blind spots that exist and help them secure their digital assets. By leveraging CSC’s proprietary solutions, companies can get secure to protect against cyber threats to their online assets, helping them avoid devastating revenue loss, brand reputation damage, or significant financial penalties because of policies like the General Data Protection Regulation (GDPR). CSC also provides online brand protection—the combination of online brand monitoring and enforcement activities—taking a holistic approach to digital asset protection, along with fraud protection services to combat phishing. Headquartered in Wilmington, Delaware, USA, since 1899, CSC has offices throughout the United States, Canada, Europe, and the Asia-Pacific region. CSC is a global company capable of doing business wherever our clients are—and we accomplish that by employing experts in every business we serve. Visit cscdbs.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20201008005203/en/
Contact information
For more information:
Christine Blake
W2 Communications
703-877-8114
CSC@w2comm.com
CSC® News Room
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Ant International’s Alipay+ Adds New Bank Partners Amid Cross-border Mobile Payment Boom in Asia Pacific24.7.2026 07:10:00 EEST | Press release
Alipay+, Ant International's unified wallet gateway, is adding more bank partners to its network of over 50 leading digital wallets and financial institutions. Its global bank partners range from incumbent banks to fully digital banks. The latest banking partner to join Alipay+ is Hang Seng Bank, Alipay+’s first banking partner in Hong Kong. Hang Seng Mobile App users can now make payments via QR code scan in the Chinese Mainland and overseas by simply using the Hang Seng Mobile App at over 100 million merchants across more than 55 countries/regions. Accelerating revenue growth through cross-border mobile payments Demand for outbound cross-border payments from Asia Pacific is projected to increase faster than the global average. Alongside growing adoption of digital wallets, consumer-to-consumer (C2C) and consumer-to-business (C2B) outbound cross-border payment volume from Asia Pacific could reach 3.7 trillion by 2032, almost doubling from 2024. This growth represents opportunities for
mimik Operationalizes Agentic AI on the AMD Ryzen™ AI Embedded X100 Series23.7.2026 21:30:00 EEST | Press release
mimik today announced mimOE™ Embedded Edition, a package of its Agentix Operating Engine and a set of purpose-built tools for the AMD Ryzen™ AI Embedded X100 Series processor, the newest processor in a family designed for physical AI, autonomous systems, and industrial automation. Available to download today, mimOE Embedded Edition gives OEMs, tier-1 suppliers, system integrators, and agent developers the path to operationalize Agentix-Native systems (aka Agentic AI), in which autonomous agents can reason, coordinate, and act directly on devices, from PoC to scaled operations with certainty. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260723555565/en/ Agentic AI operations are both CPU and GPU bound. Enterprises can now scale with certainty. Generative AI has centered on the GPU. Agentix-Native systems must spread the work. In a real multi-agent workflow traced by mimik, more than 80 percent of operations were CPU work: d
U.S. Federal Court Permanently Bans 19 Online Sellers of Fake Urolithin A Supplements and Awards $5.3 Million in Damages to Timeline23.7.2026 17:27:00 EEST | Press release
Timeline (Amazentis SA), the Swiss life-sciences company that pioneered the postbiotic ingredient Urolithin A and its branded form Mitopure®, together with its U.S. subsidiary Timeline Longevity, Inc., announced today that the U.S. District Court for the District of Massachusetts has granted the companies’ motion for default judgments and permanent injunctions against 19 online sellers found to have marketed and sold nutritional supplements falsely advertised as containing Urolithin A. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260722951066/en/ Timeline longevity supplement powered by Mitopure; proprietary, highly pure Urolithin A. The order, entered July 15, 2026 by Judge Myong J. Joun in Amazentis SA et al. v. The Partnerships and Unincorporated Associations Identified on Schedule “A”, Case No. 1:25-cv-12913-MJJ (District of Massachusetts), permanently enjoins 19 defaulting defendants from further manufacturing, market
TestMu AI Introduces the Source-to-Verdict Loop in Kane CLI, Carrying Every Requirement to a Ship Decision With Portable Proof23.7.2026 16:45:00 EEST | Press release
TestMu AI (formerly LambdaTest), the world's first Agentic AI-powered Quality Engineering platform, introduced a source-to-verdict loop in Kane CLI, its natural-language testing tool. Building on Kane CLI's evolution from a browser automation tool, the loop carries a product requirement to a ship decision, writing the tests, running them in the local browser, collecting the proof, measuring coverage from what actually happened, and returning a verdict. As AI agents write, run, and fix tests, a green checkmark is no longer enough: a step that checks nothing passes, a test written against a spec that changed weeks ago passes, and an agent that says “done” without the click ever landing passes. Empty green and earned green are the same color on every dashboard, the number climbs while the risk does not move. Kane CLI closes that gap: it carries a requirement to a verdict, and proves every step of it. One loop. Source to verdict. You no longer hand Kane CLI a test script, you hand it your
Norway’s health system adopts Wolters Kluwer UpToDate Enterprise Edition23.7.2026 16:30:00 EEST | Press release
Wolters Kluwer Health announced that Norway’s health system has renewed its adoption of UpToDate Enterprise Edition, a market-leading Clinical Decision Support (CDS) solution, for its nationwide health system which includes over 50 public hospitals and 11,000 beds in over 20 trusts. This extends a 15 year partnership with Helsebiblioteket, now part of the Norwegian Institute of Public Health (NIPH). Helping clinicians on a national scale Kjell Tjensvoll, Team Leader for Helsebiblioteket said, ‘‘Providing frontline teams with easy access to the latest medical knowledge is vital in reducing unwarranted variation and improving patient care on a national scale. UpToDate Enterprise Edition enables this, and we are delighted to strengthen our relationship with Wolters Kluwer and provide continued support for clinicians across the country.’’ UpToDate Enterprise Edition was selected by Helsebiblioteket, the Norwegian Electronic Health Library. The selection followed a competitive process by th
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
