Retired sales engineer, still posting occasionally on issues related to DNS, DHCP, IP address management and related topics. (For personal tweets see @hecker.)
Finally, a side note: I love the acronym MTTI ("Mean Time to Innocence"). I recall lots of times when I was at @Infoblox and customers would contact me with a supposed DNS problem that turned out to be something else entirely. "It's always DNS"---but a lot of times it's not! 4/4
Quick thoughts on @Infoblox IQ: This to me is the key statement: "We started this work believing the frontier [AI] models would figure DDI and DNS security out on their own. . . . They couldn’t. Not reliably, not at the depth an operator needs." 1/
A future extension of @Infoblox IQ to DHCP and IP address management is a natural move, given historical Infoblox integration between those services and DNS, leveraging the rich set of DNS/DHCP/IPAM data they manage. 3/
Today Infoblox announces Infoblox IQ, an agentic operations layer built on the most authoritative network, security and asset data in the enterprise. Learn more: https://t.co/xEhYx2nZ0G
Together, Infoblox and @AxurBrasil deliver Digital Risk Protection Services (DRPS), part of Infoblox Exposure Management, a unified approach to discovering, validating, disrupting and preventing external threats before they impact users, brands or the business.
Looking back on one of the best weeks of the year! We had a great time at @OneRSAC connecting with customers, partners and peers across the cybersecurity industry.
#RSAC#RSAC2026
This is a really clever technique by the @Infoblox Threat Intel team to leverage SAN attributes in TLS server certificates to link together multiple domains associated with threat actors. (I don't work for Infoblox anymore but I think more people should know what it's up to.)
For anyone interested in threat intelligence, data science, graph theory — or just curious how the internet really works under the hood. This started with a simple question:
What hidden signals exist inside SSL certificates that we’re not fully using? https://t.co/cHJP4Oxqbp🧵
Detect. Disrupt. Defend. Join @Infoblox on 3/19 at 12:00pm ET for a federal-focused webinar on DNS-layer security and the Infoblox Threat Defense Fast Track Program—delivering practical threat visibility and mitigation without new infrastructure. https://t.co/PZg89FcsZb
Infoblox has signed an agreement to acquire @AxurBrasil, a global provider of AI-powered security solutions that help organizations detect and disrupt threats that originate beyond the enterprise perimeter, subject to regulatory approval. Learn more: https://t.co/RMGIKiFKFe
A great read from Titi Shodiya of @Infoblox in @signalmag on DNS as a control point and the new NIST SP 800-81r3 guidance on DNS as “a foundational layer of network security in zero trust and defense-in-depth security risk management approaches.” https://t.co/O0ek5xpmUe
To thrive in the #AI era, networks must be built for hybrid, multi-cloud environments. DNS, DHCP, and IPAM are no longer just plumbing—they are the control plane powering AI applications — Mukesh Gupta, Executive Vice President & Chief Product Officer, @Infoblox, at Infoblox Exchange
#InfobloxExchange2025 #YourFutureRunsOnInsights #CyberSecurity #HybridCloud #AI #CIO #CISO
@Infoblox@srikrp@NivedanPrakash@H_Y_DESAI@ravignair@Prabhasjha3110@AparnaTawade
Why manage your IP addresses in different ways across different clouds? Infoblox Universal IPAM can be your go-to place for all your cloud environments *plus* your on-prem networks too.
Unify IP Address Management with Infoblox and @GoogleCloud internal range integration.
🟩 Assign IP address blocks in Universal IPAM
🟩 Protect on-premises and external IP address blocks in Google Cloud
Read more: https://t.co/a5P2HApqJy
It's not bragging to note that Infoblox has great DNS threat intelligence--and now you can take advantage of it if you're using the native AWS Network Firewall.
Are you ready to stop reacting and start predicting? Activate Infoblox’s Protective DNS intelligence directly in #AWS Network Firewall and strengthen your cloud perimeter protection today. https://t.co/xSazl5j8bu
#AWSPartners
If you keep a close eye on the DNS abuse landscape, you’ve probably noticed a rise in malicious activity and abuse reports linked to Traffic Distribution Systems (TDS) — infrastructure that’s fast becoming a go-to tool for phishing and other malicious campaigns.
Earlier this year, our peers at @Infoblox shared over 100,000 domains tied to Vextrio, a threat actor group notorious for its extensive use of TDS.
Needless to say, those domains are now listed on the Spamhaus Domain Blocklist 💪
Curious to learn more about TDS abuse? In our latest blog, we break down how TDS are being abused, why they’re so challenging to take down, and what we can do together to fight back.
Read the blog here 👉 https://t.co/pWCf9TDbUm
Mass personalization of attacks via AI exponentially raises the probability of each enterprise becoming a “patient zero.” - Scott Harrell, Infoblox CEO
@georgehimself Yes, I believe two-factor authentication in general is broken on X, at least for accounts using passkeys (of which Yubikeys are a subset) and possibly even for accounts using a one-time password app like Google Authenticator.
Well, this is a problem: It looks like everyone using a Yubikey for 2FA on X can't login because X messed up the YK authentication process: stuck in a re-enrollment loop. This appears to be true even for people who re-enrolled their Yubikeys before the November 10 deadline.
@yospuig Yeah, it looks as if people are screwed unless they have an alternate X account they can post from. I wonder if X will need to force-disable 2FA on all Yubikey-enabled accounts (maybe *all* accounts with 2FA?) to recover? Just a classic screw-up.