Domain Security

DNSSEC, SSL/TLS, domain hijacking prevention, and abuse mitigation.

DNSSEC

Cryptographic extensions that authenticate DNS responses to prevent tampering.

SSL/TLS 인증서

Cryptographic certificate enabling encrypted HTTPS connections for a domain.

도메인 하이재킹

Unauthorized takeover of a domain through social engineering or security exploits.

도메인 보안

All measures protecting domain names from unauthorized access or modification.

HTTPS 요구사항 (HSTS)

TLD-level requirement for HTTPS, enforced via browser HSTS preload lists.

DNS 스푸핑 (캐시 오염)

Attack that corrupts DNS cache data to redirect users to malicious sites.

타이포스쿼팅

Registering misspelled variants of popular domains to capture mistyped traffic.

사이버스쿼팅

Registering domains in bad faith that infringe on existing trademarks.

SPF 레코드

DNS TXT record specifying authorized email-sending servers for a domain.

DMARC

Email authentication protocol that uses SPF and DKIM to prevent email spoofing.

DKIM

Email authentication adding digital signatures verified via DNS public keys.

도메인 남용

Malicious use of domains for phishing, malware, spam, or fraud.

도메인 섀도잉

Attack creating malicious subdomains under a legitimate domain after compromising its registrar account.

DNS 리바인딩

Attack that tricks browsers into accessing internal network resources by rapidly changing a domain's DNS resolution.

인증서 투명성 (CT)

Open standard requiring all TLS certificates to be recorded in public, auditable logs for transparency and abuse detection.

HSTS 프리로딩

Submission of a domain to browser preload lists ensuring HTTPS-only access from the very first connection.

DANE (DNS 기반 명명 엔티티 인증)

Protocol using DNSSEC-signed TLSA records to bind TLS certificates to domains, bypassing traditional CA trust.

RPZ(응답 정책 존)

DNS firewall mechanism allowing resolvers to block or redirect queries for domains on threat intelligence lists.

도메인 프론팅

Technique hiding traffic's true destination by using a trusted domain's CDN infrastructure to route encrypted requests.

BIMI (메시지 식별을 위한 브랜드 지표)

Email standard enabling verified brand logos in inboxes, requiring DMARC enforcement and a Verified Mark Certificate.

MTA-STS (메일 전송 에이전트 엄격한 전송 보안)

Standard requiring mail servers to use valid TLS when delivering email to a domain, preventing TLS downgrade attacks.

도메인 평판

Score assigned to a domain based on abuse history, email behavior, and content signals used by filters and security systems.