Overview
Syllabus
Introduction
Malicious Domain Names
Research Hypothesis
Outline
Domain Registrations
Malicious Domains
Registration Data
Bootstrap IP Address
Campaign Identification
How did they operate
What did we explore
Is it obvious that the registration will be malicious
What can we do
Other organizations preventing
Manual vs automated analysis
Campaign criteria
The ecosystem of domain registrations
The insights we found
The window of opportunity
What is the reason why
Which blacklist did we use
Data summary
Campaigns with links
Relations between campaigns
Clustering
Automation
Demand and offer questions
facilitators
toxicity
good API
email
campaigns vs black lists
prevention detection
Spamhaus
Prevention and detection
Prediction models
Current operation
Domain seizures
Blacklist
Key takeaways
The facilitators
The second takeaway
Productive detection and prevention
How will the catandmouse game kill
Compliance
TLD Ecosystem
Europe
Thank you
Taught by
OWASP Foundation