Privacy

Empty web pages are a security risk, Kaspersky warns

Domain names - internet and web telecommunication concept. 3d rendering

Tech Radar reports that registered websites that have not yet been developed are increasingly being used by threat actors to harvest private data from unsuspecting victims. Kaspersky's warning focuses on parked domains, which are registered web addresses that currently lack a developed website.

These seemingly harmless blank pages or "Coming Soon" placeholders can silently collect a visitor's IP address, approximate location, User-Agent string, and cookie identifiers. Threat actors further build browser fingerprints, which are unique identifiers derived from a device's hardware and software combination, and feed this data into advertising networks to create targeted profiles without user consent. This fingerprinting method is difficult to evade, even with private browsing.

Beyond data harvesting, these domains can redirect visitors to fraudulent platforms, adult content sites, or online casinos. Typosquatting, where a slightly misspelled domain mimics a well-known brand, poses a significant risk, potentially leading users to phishing pages or triggering drive-by downloads. Research indicates that over 90% of parked domains now serve malicious content. Kaspersky recommends avoiding suspicious links, clearing cache and cookies after accidental visits, and using web tracking blocking software to mitigate these risks.

Source: Tech Radar

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds