Route 53 DNS Firewall Stops Sneaky Domain Attacks
- Grace N
- Nov 17, 2025
- 1 min read
Amazon Route 53 Resolver DNS Firewall Advanced now protects against Dictionary-based DGA attacks, where malicious domain names are generated using pseudo-random word combinations to evade detection. With this update, you can monitor and block suspicious DNS queries in real time, applying rules across your VPCs via AWS Firewall Manager, CloudFormation, or Route 53 Profiles. Available in all AWS regions, including GovCloud, this feature strengthens DNS security against sophisticated, human-readable domain threats.
Comments