Farsight Security and Infoblox provide zero-hour protection against cyberattacks due to new domains

Farsight Security and Infoblox have formed a reseller partnership that will integrate Farsight’s Newly Observed Domains (NOD) solution with the Infoblox ActiveTrust® platform to significantly reduce the risk of cyberattacks associated with new domains. 

  • 7 years ago Posted in
Today cybercriminals buy, use, and discard thousands of domain names for targeted phishing campaigns, create websites to sell counterfeit goods, and commit other malicious activities. Since Farsight introduced NOD in 2014, the number of first-time domains it detects each day has tripled to over 150,000.  To fight and stay ahead of this escalating problem, users need real-time awareness of the instant these fresh sites go live. Farsight Security observes millions of domains globally on a daily basis and provides zero-hour protection by cross-referencing these observations with Farsight DNSDB, the world’s largest historical Passive DNS database with over 13 Billion DNS resolutions.

By integrating Farsight NOD with Infoblox Threat Intelligence Data Exchange (TIDE) part of ActiveTrust, users can be blocked from communicating with new domains within minutes of a domain’s first activity, providing protection during the critical hours-to-day long window of maximum vulnerability before a reputation score can be assigned.  
 
“The cheap cost of domains is fueling the cybercrime economy. It only takes 30 seconds for a domain name to be registered and become usable by a cybercriminal. Together, Infoblox and Farsight Security enable organisations to match threat actors’ agility in launching quick strike attacks, to better protect their businesses against potentially devastating attacks,” said Dr. Paul Vixie, Farsight Security CEO and Cofounder.  
 
“Through our Technology Alliance Partner Program (TAP), Infoblox is able to integrate with complementary security solutions like Farsight NOD to help better protect organisations from cyber threats,” said Kanaiya Vasani, Infoblox Vice President of Corporate and Business Development.  “Infoblox ActiveTrust platform provides organisations rich contextual threat information and actionable insight about cyberattacks against their specific networks. Farsight Security is a natural partner for Infoblox and we look forward to successfully delivering Newly Observed Domains to our customers to increase the speed and accuracy of their attack detection and mitigation.”
 
Farsight NOD and Infoblox TIDE Solution Benefits:
 
·         Zero-Hour Protection: Near real time protection against newly observed domains which may be malicious.
·         Malware Containment: Protect against malware infection and exfiltration of intellectual property by blocking outbound connections to NODs. 
·         Brand protection: Take immediate action in case of suspected brand phishing, confusion or dilution when NODs are detected. New domains are often used to trick users by creating a lookalike site which takes users to a malicious site.
·         Rapid threat investigation. Leverage Infoblox Dossier® search tool to gain threat context to NODs when researching suspicious domains, enabling users to prioritize action and block NODs immediately. 
Research shows ‘game needs to be changed,’ with security innovation years behind that of the...
73% of organizations lack automated patch management, and 62% experienced incidents involving...
Quest Software has signed a definitive agreement with Clearlake Capital Group, L.P. (together with...
Dell EMC PowerProtect Cyber Recovery for AWS provides a fast, easy-to-deploy public cloud vault to...
Aqua’s cloud native application protection platform becomes the only solution that protects cloud...
54% of organisations working on a security transformation project now or in the next 12 months.
Node4 has released its Mid-Market IT Priorities Report 2021. The independent report reveals that...
Zscaler Zero Trust exchange cloud-based architecture enables superior green security capabilities...