DomainTools
banner
domaintools.bsky.social
DomainTools
@domaintools.bsky.social
55 followers 3 following 35 posts
A global leader for internet #intel that enables security practitioners to proactively defend their organization in a constantly evolving threat landscape.
Posts Media Videos Starter Packs
DomainTools integrations deliver critical DNS intelligence into your TIP, SIEM, SOAR, E/XDR, and LLM solutions to:
💡Enrich alerts
⚠️Get predictive Risk Scores
🔗Make infrastructure pivots
🔍Get instant Whois/RDAP data
Learn more: https://www.domaintools.com/demo/
Request a Demo | DomainTools - Start here. Know now.
Discover how DomainTools can enhance your organizations capabilities and stop threats before they happen. Request a DomainTools demo today.
www.domaintools.com
DomainTools maximizes the value of OEM products by identifying up to 83% more malicious domains, 96% faster compared to industry-standard blocklists. Want to learn more? Schedule a conversation with us here: https://www.domaintools.com/demo/

Request a Demo | DomainTools - Start here. Know now.
Discover how DomainTools can enhance your organizations capabilities and stop threats before they happen. Request a DomainTools demo today.
www.domaintools.com
Ransomware & phishing campaigns are evolving fast. DomainTools helps Federal defenders stay ahead by exposing the infrastructure behind the threats.
Schedule a demo today to learn how your team can use DNS intelligence to strengthen your cyber posture: https://www.domaintools.com/domaintools-demo/
DomainTools Demo - DomainTools | Start Here. Know Now.
www.domaintools.com
Year-end budgets are in play. Are you making them count? 🤔DomainTools integrations instantly enhance your security stack & deliver key DNS intelligence so you can:
🔍Enrich alerts
⚡Automate investigations
🗺️Map adversary infrastructure
Request a demo today! https://www.domaintools.com/demo/
Request a Demo | DomainTools - Start here. Know now.
Discover how DomainTools can enhance your organizations capabilities and stop threats before they happen. Request a DomainTools demo today.
www.domaintools.com
From NPM bypasses to crypto scam networks—October brought a wave of complexity, and we’ve got the full analysis.

Read and subscribe to October’s edition of the DomainTools Investigations Newsletter here: https://www.linkedin.com/newsletters/dt-investigations-news-7289801727560630273/
Is your team maximizing it DNS intel? DomainTools helps defenders uncover adversary infrastructure before it becomes a threat. Download our Best Practices Guide for OEMs to learn how our data empowers proactive defense & delivers up to 17X ROI in the first year. https://ow.ly/VcEU50Xh3Le
Tired of jumping between security tools? We’ve got you covered.

DomainTools integrates with your favorite SOC platforms to deliver comprehensive DNS intelligence. Get the right data where you need it.

Request a demo to see our integrations in action.
https://www.domaintools.com/demo/
Request a Demo | DomainTools - Start here. Know now.
Discover how DomainTools can enhance your organizations capabilities and stop threats before they happen. Request a DomainTools demo today.
www.domaintools.com
Get the intelligence you need, right where you work 💻 DomainTools integrates with your favorite tools to deliver:
🚨Alert/Event Enrichment
🔮Predictive Risk Scoring
🔗Infrastructure Pivots
🔍Whois/RDAP Data
See how our integrations support your team.
https://www.domaintools.com/demo/
Request a Demo | DomainTools - Start here. Know now.
Discover how DomainTools can enhance your organizations capabilities and stop threats before they happen. Request a DomainTools demo today.
www.domaintools.com
Government and military systems are among the highest-profile targets for attackers. Passive DNS data from DomainTools aids government agencies worldwide in gaining context on attacks against government or military infrastructure & networks. Learn more: https://youtu.be/NEf4hMR6qo8?t=130
Thanks to all that attended Ian Campbell and @mjwalk.bsky.social #BSidesNoVA talks this morning. Please don’t hesitate to stop by our table and say hello 👋 !
At 11:30 AM Ian is presenting on DNS and domain intelligence as it applies to investigative journalist investigations. In related news, Allan Liska is selling “The Press Guardian”. We highly recommend checking out his table as well!

bsidesnova-2025.sessionize.com/session/1001...
Attending #BSidesNoVA? Be sure to say hello to Malachi and Ian at the DomainTools table before their talks at 11:30!
JUST DROPPED: Our Head of Investigations’ monthly newsletter!

📰This edition shares research on Salt Typhoon, the Kimsuky leak, PoisonSeed, and a banker trojan targeting android users in Southeast Asia: www.linkedin.com/newsletters/...

#Cybersecurity #ThreatIntel #InfoSec
DT Investigations News | LinkedIn
Monthly updates featuring community-based research focused on Domain- and DNS-based attacks
www.linkedin.com
Football season is back, and so are the scammers! 🏈 Learn how to avoid activation scams spoofing services like ESPN & CBS, and get essential security tips for organizations and end-users. Read our latest research today:
https://bit.ly/4nr2o0W
Avoiding Activation Scams this Football Season - DomainTools | Start Here. Know Now.
Learn how to use the DomainTools real-time Feed API within Splunk. This API enables faster detection, more flexible integration, and rapid adaptation to threats.
www.domaintools.com
Steve Behm at #splunkconf25 shared a 2-year investigation into attacks on USPS & Amazon. His talk highlighted how to use Splunk and DomainTools to detect DGA domains and automate domain discovery.

#Cybersecurity #ThreatIntelligence #Splunk #Phishing
New research raises questions about PoisonSeed using TTPs similar to SCATTERED SPIDER. The DTI team identified 21 new malicious domains spoofing SendGrid and using fake Cloudflare CAPTCHAs to harvest credentials:

https://bit.ly/46w63on

#ThreatIntel #PoisonSeed #SCATTEREDSPIDER