Four exploit kits account for 96 percent of total activity in the category for the third quarter of this year. Criminals use DNS infrastructure in three ways: registering malicious domain names, subdomains, and exfiltrating stolen data. The latest edition of the Infoblox DNS Threat Index measures the creation of malicious DNS infrastructure, including exploit kits. Some exploit kits are even distributed in a software-as-a-service model, according to IID, the company providing data for the index.”]

