Rete e infrastruttura · Phishing / BEC
Attori di phishing sfruttano record PTR .arpa e ip6.arpa per mascherare link nelle email.
3 fonti · 9 mar
CSO Online
Hacker abusing .arpa domain to evade phishing detection, says Infoblox
The tactic combines IPv6 tunneling and domain abuse to redirect victims to malicious websites.
originaleSecurityWeek
Internet Infrastructure TLD .arpa Abused in Phishing Attacks
Abusing DNS record management controls, the threat actor hides the location of malicious content via Cloudflare.
originaleBleepingComputer
Hackers abuse .arpa DNS and ipv6 to evade phishing defenses
Threat actors are abusing the special-use ".arpa" domain and IPv6 reverse DNS in phishing campaigns that more easily evade domain reputation checks and email security gateways.
originalePart of the PlainSec briefing for 2026-03-09
Every edition of this story: Phisher sfruttano DNS inverso .arpa IPv6 per eludere gateway email