Why Filtering Malware Based on DNS is a Security Sweet Spot
Summary
Our Sr. Technical Product Manager, Ricardo Arroyo, recently wrote a guest post for Help Net Security explaining some of these methods and why he believes filtering based on Domain Name System (DNS) is a good fit for many organizations. DNS filtering sits in the sweet spot between these two options; not too broad as to block legitimate sites by accident, but not too much extra work for IT either. Here’s an excerpt from the article: “For example, regardless of whether you read your email using a thick client like Outlook or use a web UI like Gmail, clicking on a malicious link will result in the same resolution of the same name. Clicking on a malicious link in Acrobat Reader or Microsoft Word results in the same resolution of the same name regardless of document type or application. That means DNS-level filtering will block malicious links in all of these scenarios without needing to be customized to the specific application or protocol in use.