Amazon Route 53 DNS Firewall adds protection against Dictionary-based DGA attacks
News
This article announces that Amazon Route 53 DNS Firewall Advanced now protects against Dictionary-based DGA attacks, which generate human-readable domain names to evade detection.
- Route 53 DNS Firewall Advanced monitors and blocks Dictionary-based DGA attack queries in real-time
- Dictionary DGA attacks create domain names mimicking legitimate ones to resist detection
- Configure DNS Firewall Advanced rules specifying Dictionary DGA as threat to inspect
- Add rules to DNS Firewall rule groups and enforce on VPCs directly or via Firewall Manager
- Feature available in all AWS Regions including GovCloud (US)
Route 53 DNS Firewall Advanced now provides enhanced protection against sophisticated Dictionary-based DGA attacks alongside existing DNS tunneling protections.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
May 13
2025
2025
Protect against advanced DNS threats with Amazon Route 53 Resolver DNS Firewall
Nov 15
2024
2024
Introducing Amazon Route 53 Resolver DNS Firewall Advanced
Nov 21
2025
2025
Amazon Route 53 DNS service adds support for IPv6 API service endpoint
Nov 19
2025
2025
Amazon Route 53 DNS service now supports AWS PrivateLink
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.