- Aug 22, 2013
- 975
- 5,255
- 1,869
Ai generated:
NextDNS has introduced several new Early Access security options under the Security tab. These are aimed at blocking infrastructure that is commonly abused for phishing, malware, command-and-control traffic, data exfiltration and bypassing traditional security controls.
Free Hosting Domains blocks free hosting subdomains such as *.pages.dev, *.vercel.app and *.netlify.app, which are frequently abused to host phishing and malicious content. Legitimate websites using these platforms with their own custom domain names should not be affected.
Tunneling Endpoints blocks domains associated with tunneling services such as ngrok and Cloudflare Tunnel. While these services are perfectly legitimate, attackers often use them to expose phishing pages or malicious servers to the Internet.
Data Drop Services blocks services that can be used to exchange or collect data. These can be abused by malware for command-and-control communication and data exfiltration, although there are legitimate uses for these services as well.
Residential Hosting blocks domains that resolve to residential IP ranges. Compromised home connections and residential proxies are increasingly used to host phishing sites, malware infrastructure and C2 servers.
Decentralized Web Gateways blocks public gateways that provide access to decentralized networks such as IPFS. These gateways have legitimate uses, but can also be abused to host content that is difficult to take down or block.


