Researchers show AI can scale dangling DNS takeovers on government and major enterprise subdomains

Researchers say forgotten DNS records at government agencies and major companies could let attackers take over trusted subdomains at scale. Silent Push's 'DangleGeddon' research used AI to find and validate exploitable dangling DNS records—where a domain still points to a deleted cloud resource—across about 12,500 domains and identified hundreds of potential targets, including exposed Azure Blob Storage and Azure VM-backed endpoints at organizations such as Société Générale, Ford, and Eli Lilly.
Why it matters: This can turn a simple cleanup mistake into a high-trust phishing or malware platform that uses real .gov and corporate subdomains. Organizations should urgently audit DNS records tied to deprovisioned cloud services, remove stale records, and check cloud resource ownership paths before attackers claim them.

Sources

‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale
Kevin Townsend 2026.07.30 100% relevant
This article establishes a distinct story because it identifies a specific, large-scale AI-assisted attack method with real-world exposed targets rather than updating an existing tracked incident, CVE, or breach.
← Back to all stories