AI News AI资讯 1d ago Updated 1h ago 更新于 1小时前 42

The purpose of DNS is to spread scams DNS的目的是传播诈骗

85 million new gTLD registrations occurred in 2025, with 8.5 million already added to blocklists by May 2025 The actual abuse rate is estimated between 10-20%, meaning roughly one in five newly registered gTLD domains are used for scams Terence Eden characterizes DNS as a primary vector for criminal activity at alarming scale, calling it a crisis ICANN has been aware of and discussing this problem for years, yet the issue persists at escalating levels 2025年gTLD新注册域名达8500万个,其中850万已被列入黑名单 滥用率估计在10%-20%之间,意味着每5个新注册gTLD域名中就有1个用于诈骗 ICANN多年来一直在讨论DNS滥用问题,但进展缓慢 域名系统正成为网络犯罪的主要传播渠道

55
Hot 热度
65
Quality 质量
60
Impact 影响力

Analysis 深度分析

TL;DR

  • 85 million new gTLD registrations occurred in 2025, with 8.5 million already added to blocklists by May 2025
  • The actual abuse rate is estimated between 10-20%, meaning roughly one in five newly registered gTLD domains are used for scams
  • Terence Eden characterizes DNS as a primary vector for criminal activity at alarming scale, calling it a crisis
  • ICANN has been aware of and discussing this problem for years, yet the issue persists at escalating levels

Why It Matters

This highlights a critical infrastructure vulnerability that directly impacts AI practitioners deploying services requiring domain trust, email deliverability, and secure communications. The scale of DNS abuse affects content filtering systems, AI safety layers, and any application relying on domain reputation signals.

Technical Details

  • 85 million new gTLD registrations in 2025; 8.5 million (10%) added to blocklists by May 2025 alone
  • Estimated real abuse rate likely between 10-20%, suggesting up to 17 million malicious domains
  • Blocklist addition serves as a lagging indicator, meaning actual abuse figures are significantly higher than recorded
  • ICANN has acknowledged the problem for years without effective resolution, indicating systemic governance gaps

Industry Insight

  • Organizations should implement proactive domain monitoring and reputation filtering rather than relying solely on blocklists, which are inherently reactive
  • AI systems that depend on URL/domain trust signals need updated threat intelligence pipelines to account for the escalating abuse rate
  • The persistence of this crisis despite years of ICANN discussion suggests regulatory and industry coordination failures that will likely worsen before improvement

TL;DR

  • 2025年gTLD新注册域名达8500万个,其中850万已被列入黑名单
  • 滥用率估计在10%-20%之间,意味着每5个新注册gTLD域名中就有1个用于诈骗
  • ICANN多年来一直在讨论DNS滥用问题,但进展缓慢
  • 域名系统正成为网络犯罪的主要传播渠道

为什么值得看

这篇博文揭示了DNS基础设施被大规模滥用的严峻现实,对网络安全从业者和域名注册相关从业者具有重要警示意义。数据表明域名注册环节存在系统性漏洞,需要行业层面协同治理。

技术解析

  • Interisle报告显示2025年gTLD新注册量达8500万,其中850万(10%)在5月前已被加入黑名单,实际滥用率可能高达20%
  • 域名注册门槛低、匿名性强,成为诈骗分子的首选工具
  • ICANN作为域名管理机构,多年来已识别该问题但缺乏有效治理措施
  • 当前缺乏强制性的域名注册审核机制和实时威胁检测系统

行业启示

  • 域名注册商和DNS服务商需要加强注册审核和实时监控能力,建立更严格的滥用检测机制
  • 行业应推动建立跨组织的威胁情报共享平台,提升对恶意域名的响应速度
  • 政策制定者和监管机构需要重新审视域名注册的管理框架,平衡便利性与安全性

Disclaimer: The above content is generated by AI and is for reference only. 免责声明:以上内容由 AI 生成,仅供参考。

Security 安全 Research 科学研究