Risky Bulletin: Russia starts blocking DoH and DoT
Summary
Russia has begun blocking DNS-over-HTTPS (DoH) and DNS-over-TLS (DoT) protocols, which are designed to enhance privacy and security by encrypting DNS queries. In unrelated news, the hacking group NoName057 has leaked data on Spanish police and military targets, and China and South Korea have detained a vishing gang.
IFF Assessment
The blocking of DoH and DoT in Russia by a nation-state is a negative development for internet privacy and security, while the actions of the threat actors represent ongoing malicious activity.
Defender Context
The blocking of DoH and DoT by Russia restricts user privacy and potentially makes it easier for state actors to monitor or censor internet traffic. Defenders should be aware of geopolitical influences on internet infrastructure and the potential for increased surveillance or censorship in certain regions. The mention of threat actor activity highlights the persistent nature of cybercrime and espionage.