Many attack vectors are leveraged by attackers and organizations address these threats using multiple layers of perimeter security. These include next-generation firewalls, secure web gateways, sandboxing, intrusion prevention systems, anti-virus, EDR and more. Yet despite these safeguards, bad actors continue to find ways by exploiting gaps outside of your perimeter. Over the last few years, a large number of organizations have been affected by DNS record manipulation (DNS Hijacking) including telecoms, ISP providers and infrastructure providers. In addition to global-scale mass scanning of SSL certificates related to your domain, SOCRadar has the capacity to monitor auto-discovered DNS records with an interval of 10 minutes and generates real-time email alerts if there’s any change in A, AAAA, CNAME, NS, MX records.

DNS Monitoring

Scalable continuity

Continuously monitor all of your domain DNS infrastructure.


Discover, map and monitor your DNS configurations automatically.

Rogue DNS server alerts

Get alerted immediately when DNS records are changed.

Dynamic DNS

Detect malicious dynamic DNS hostnames targeting your brand.

Stop sender fraud

Reduce the risk of malicious forgeries by monitoring the existence of SPF and DMARC.

Open zone transfer risk

Detect if you’re revealing hostnames, subdomains and other DNS records publicly.

Unsecured Recursive Resolvers

Detect if you’re at risk of being part of DNS amplification DDoS attacks.

More SOCRadar modules

SOCRadar combines external attack surface management, digital risk protection, and threat intelligence capabilities to improve your security posture.