CYBER Insights » THREAT INTEL: What is a DNSBL? A Domain Name System Blacklist ‘helps’ to fight email spammers.

THREAT INTEL: What is a DNSBL? A Domain Name System Blacklist ‘helps’ to fight email spammers.

Image Credit: RecuperaData/Flickr
Image Credit: RecuperaData/Flickr

Gibraltar: Thursday 27 June  2024 at 11:50 CET

THREAT INTEL: What is a DNSBL? – A DNSBL or A DNSBL or Domain Name System Blacklist is a part of a system that ‘helps’ to fight email spammers.

By Andy Jenkinson – Guest Contributor |  Group CEO Cybersec Innovation Partners
via IainFRASER.net/CYBERInsights
First for SME Cybersecurity News
Google Indexed on 270624 at 12:00 CET

#SMECyberInsights #SMECyberNews #Cybersecurity #WhitethornShield #InternetSecurity #Cybercrime #DNS #PKI

A DNSBL or Domain Name System Blacklist is a part of a system that ‘helps’ to fight email spammers. There are a lot of such lists in existence, each of them containing a list of IP addresses known to send spam.

DNS blacklists are used by email services and website admins to effectively keep spam out of their clients’ inboxes. Think of such lists as bouncers, but instead of having a list of people to let in, they contain lists of people to keep out.

Despite its name, the term “list” is an oversimplification. These “blacklists” are not simply lists but rather security mechanisms that utilize various methods of checking whether or not a specific address or domain is listed, gets listed, or is removed from the list. These lists can also sometimes be referred to as “blocklists”.

Cybersecurity News

PDNS is similar in the fact it collects information, retrospectively on known rogue IP addresses used for malicious purposes to block them. Both DNSBL and PDNS are reliant on the information being shared ‘after the event’ and populated into lists.

Neither DNSBL nor PDNS are a substitute to proactive DNS controls and management.

The single IP address below has a total of 9 out of the 24 most popular on the DNSBL. One of those using this provider and the ASN is Gartner. The server is based in Washington DC and also has nearly 30 million IPv4 addresses, over 100,000 domains hosted, 30 adult domains, and 52 Spam hosts.

Still think DNS doesn’t matter …?

Cybersec Innovation Partners
The White House
FBI Cyber Division
Central Intelligence Agency
GCHQ
Jisc
Information Commissioner’s Office
Serious Fraud Office (UK)
Metropolitan Police

About Andy Jenkinson

Group CEO CIP. Fellow Cyber Theory Institute. Director Fintech & Cyber Security Alliance (FITCA) working with Governments. Recognised Expert in Internet Asset & DNS Vulnerabilities.

Andy Jenkinson is a senior and seasoned innovative Executive with over 30 years’ experience as a hands-on lateral thinking CEO, coach, and leader. A ‘big deal’ business accelerator, and inspirational, lateral thinker, Andy has crafted, created, and been responsible for delivering 100’s £ millions of projects within the Cyber, Technical, Risk and Compliance markets for some of the world’s largest, leading organisations. Andy has a demonstrable track record of largescale technical delivery and management within many sectors including the Professional, Managed, and Financial Services.

Leave a Reply

Your email address will not be published. Required fields are marked *

Translate »