惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

爱范儿
爱范儿
H
Help Net Security
Jina AI
Jina AI
T
The Blog of Author Tim Ferriss
宝玉的分享
宝玉的分享
博客园 - 叶小钗
Y
Y Combinator Blog
罗磊的独立博客
大猫的无限游戏
大猫的无限游戏
WordPress大学
WordPress大学
C
Check Point Blog
Recent Announcements
Recent Announcements
IT之家
IT之家
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
美团技术团队
云风的 BLOG
云风的 BLOG
雷峰网
雷峰网
H
Hackread – Cybersecurity News, Data Breaches, AI and More
S
SegmentFault 最新的问题
MyScale Blog
MyScale Blog
Apple Machine Learning Research
Apple Machine Learning Research
Microsoft Azure Blog
Microsoft Azure Blog
V
Visual Studio Blog
B
Blog

Latest from TechRadar in Pro

VodafoneThree gets Ofcom approval to bring satellite connectivity to your smartphone Is this the tipping point for AI at work? New Gallup survey finds half of all US employees now use it in some way 'Every Apple user needs to know about this nasty scam': Fake warnings tell users their iCloud data will be… 'Makes it even more disappointing': Microsoft backs fossil fuel big time with $7 billion deal in race for AI… 'Maybe it’s not science fiction': Solar panels are causing rainwater to fall in one of the driest places… Maine becomes first US state to pass data centre construction ban Dozens of WordPress plugins hijacked to target thousands of sites Drone-killing laser weapons greenlit for use in US airspace – FAA and Defense Department say high-energy weapons are ‘ready to protect all air travelers from illicit drone use’ despite airspace restrictions and friendly-fire incidents 'We are currently being extorted' — crypto giant Kraken says it is facing extortion attack, here's… I tried 7 free MTD software – now I've ranked my top picks as a freelancer Jackery McGraw Hill becomes latest to see its Salesforce data hacked Looking for a new PC? Now might be great time to upgrade, as Gartner figures claim shipments are rising — while… The new engineering playbook: how AI design copilots are reshaping product development Farewell Surface Hub — Microsoft kills off its super-sized touchscreen displays, but you might still be able to get one if you act fast 'We have no interest in patient data in the UK': Palantir UK head defends record as criticisms rise Amazon’s new AI Bio Discovery tool can provide ‘every researcher’ with ‘lab-in-the-loop drug discovery’ – 40+ AI biology models can filter 300,000 novel antibody candidates down to the top results for testing in just weeks Over 100 Chrome Web Store extensions found stealing user data from thousands of accounts Europe wants tech sovereignty but is this realistic? Enterprise AI governance cannot live in a prompt. So where is the safety net? Why 2026 is the year of flexibility without friction: solving the multi-platform crisis OpenAI reveals its Mythos rival designed for cybersecurity pros When cyberattacks are inevitable, recovery becomes the strategy Closing the cloud complexity gap LaLiga uses AI to fight illegal streaming that costs its clubs $800m a year Intel and Google expand long-term chip partnership to power AI systems 'Chatbots respond not just to what you ask, but how you ask it': Report finds AI agents might be sucking up to… 'Smartphones have physical limitations': Report explains why AI is kickstarting a billion-dollar hardware arms… 'I’m pretty sure actually we really do not need to work for five days' Zoom CEO calls for end of traditional work schedules — says 3-day working week should become the norm 'It's more common than you think': Experts reveal how hackers are trying to hijack your inbox with these…
Why your next cybersecurity upgrade isn’t an AI age...
Benjamin Crawford · 2026-05-19 · via Latest from TechRadar in Pro

Despite advances in cybersecurity technology, billions of dollars in harm each year is being caused by criminals penetrating companies, internal systems and scamming their customers with surprisingly low-tech methods, such as typo-squatting domains, spoofed email addresses, and lookalike websites..

To protect businesses and their customers from such attacks, a new option being embraced by CISOs is brand-owned top-level domains, or “dotBrand TLDs,” becoming available for the first time in fourteen years during a short window ending in August this year.

CEO of Markmonitor Group.

Domains explained

A top-level domain (TLD) is the part of a web address that appears to the right of the dot—such as .com, .org, or .net. Traditionally, these domains are shared spaces, where individuals and organizations can register names on a first-come, first-served basis.

A dotBrand TLD, by contrast, is a dedicated namespace owned and operated by a single organization. Instead of relying on a shared extension like .com, a company can operate websites and services directly under its own branded TLD, registering domain names at will.

Examples of websites already using dotBrand TLDs obtained in the 2012 round include cloud.microsoft, sidewalk.amazon and swoosh.nike. In a shared domain environment like .com or .uk, attackers can register lookalike domains and email addresses to impersonate a brand.

With a dotBrand, that dynamic changes: only the brand itself can create and manage domains within its TLD, so every domain ending in that brand becomes a high-signal indicator of authenticity.

Where trust is critical

In financial services, where trust is critical, institutions like Barclays, JP Morgan Chase and BNP Paribas have leveraged their own TLDs since 2012 to create secure, branded environments. BNP Paribas describe their dotBrand domain as, “a guarantee of trustworthiness for its customers, partners and business lines.”

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

But the Paris-based bank uses its dotBrand for far more than providing its customers with ultra-secure account access. These include marketing activation websites such as wearetennis.bnpparibas and welovecinema.bnpparibas, the website of the bank’s charitable foundation fondation.bnpparibas, and the site dedicated to the financial institution’s heritage, histoire.bnpparibas. In some less obvious cases, dotBrand TLDs are used for infrastructure, internal systems, or email.

Companies such as Microsoft, Canon, and GoDaddy have incorporated their TLDs into backend operations, where they can enhance control and reduce reliance on external suppliers such as the registries for generic and country code domain names. These larger tech companies typically have very high standards for their own security posture, and the end-to-end visibility and control that an in-house TLD provides is an exact match to their requirements.

There have also been more innovative applications of dotBrand TLDs. Corporations like Google, Zara, Audi, Citi, and Philips have used their dotBrand TLDs for URL shorteners, giving social media users the comfort of knowing they are clicking on a link truly affiliated with the brand they follow, rather than using a generic shortener where the brand, or destination of the link is masked

Broad support

DotBrand TLDs can also support broader efforts to rationalize domain name portfolios. Many large organizations manage hundreds or thousands of domains, often accumulated over time for different purposes. This sprawl can create blind spots, with forgotten or poorly configured domains becoming targets for attackers.

A dotBrand initiative can act as a forcing function to consolidate and standardize these assets, aligning security, legal, and marketing teams around a unified strategy. Despite these examples of their many uses, dotBrand TLDs have remained on the periphery of most security strategies, as only a small number of early adopter companies were able to acquire theirs in 2012.

The 2026 application round, which the domain name regulator ICANN will close at the end of August this year, introduces an opportunity for thousands of additional trust-focused businesses to add a dotBrand TLD to their security arsenal. Unlike traditional domain registration, obtaining a dotBrand TLD is not a first-come, first-served online purchase. Organizations must complete an extensive application process, meet specific criteria, and work with accredited providers to operate their TLDs.

While this creates a higher barrier to entry, it also ensures that no bad actor can end up controlling a dotBrand TLD. Of course, dotBrand TLDs may still be hotly contested between brands that share a name. In the 2012 round, both the insurance company Guardian Life and The Guardian newspaper applied for the dotBrand TLD .guardian. Companies typically bring in specialized consultants to help them with the arcane dispute resolution mechanisms in such cases.

Specialized consultants are also generally employed for operating dotBrand TLDs, which requires meeting ongoing compliance requirements, specialist technical solutions, and cross-functional coordination. In addition to established brands, new dotBrand TLD participants expected to emerge in the 2026 round include many digitally native companies—including those in the crypto and Web3 space, where control over identity and infrastructure is often a core principle.

Not a complete solution

Despite its many advantages, a dotBrand TLD is not a complete security solution. As organizations plan their cybersecurity investments, the question is not whether to adopt any single approach, but how to balance different layers of defense. In combination with AI-driven threat detection, a controlled namespace can also improve signal quality. Automated systems can treat any use of the brand outside the authorized TLD as a higher-risk indicator, enabling faster and more accurate responses.

However, attackers can still operate from unrelated domains, compromise legitimate infrastructure, or exploit social engineering tactics across platforms. A dedicated namespace narrows one attack surface but does not eliminate the broader threat landscape. Its effectiveness also depends on consistent use. For a dotBrand to function as a trust anchor, customers and partners must encounter it regularly in legitimate interactions.

Without this visibility, it is unlikely to become a meaningful signal. AI tools will continue to play an important role in detecting and responding to threats. However, they operate within the constraints of the existing system. A dotBrand TLD, by contrast, offers a way to modify the system itself—changing how identity is structured and communicated.

With a limited application window approaching and no indication of if or when the next opportunity will arise, large organizations have an opportunity to consider whether this approach aligns with their long-term strategy.

We've rated and ranked the best website builders.

This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.

The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit

CEO of Markmonitor Group.