New Year, Old Threats: What Does the DNS Reveal about 2025? | WhoisXML API

Threat Reports

New Year, Old Threats: What Does the DNS Reveal about 2025?

A few days after the world welcomed 2025, news about advanced phishing campaigns leveraging generative AI surfaced.1

The use of sophisticated attack methods is expected, and so is the continuous weaponization of domain names.

WhoisXML API investigated a sample of 1,000 2025 domains from First Watch Malicious Domains Data Feed and analyzed their DNS footprint. We uncovered:

  • 401 email-connected domains, one of which turned out malicious
  • 877 IP addresses, 311 of which turned out to be malicious
  • 4,808 IP-connected domains, one of which turned out malicious
  • 10,000 string-connected subdomains

Download a sample of the threat research materials now or contact sales to discuss your intelligence needs for threat detection and response or other cybersecurity use cases.

  • [1] https://www.forbes.com/sites/zakdoffman/2025/01/03/new-gmail-outlook-apple-mail-warning-2025-hacking-nightmare-is-coming-true/
Try our WhoisXML API for free
Get started