Underminr Vulnerability Threatens 88 Million Domains with Brand Hijacking

Underminr Vulnerability Threatens 88 Million Domains with Brand Hijacking

First seen 21 May 2026, 16:20 UTC DarkreadingStreetinsiderMorningstarRescanawww.scmagazine.com+5 86% similarity 69.9

Article Content

Browse articles
ThreatCluster

ADAMnetworks has identified a new vulnerability named Underminr that affects approximately 88 million domains globally, with a heightened risk in the US, Canada, and the UK. This exploit allows attackers to manipulate web requests, effectively hijacking the brand reputations of legitimate websites. It circumvents existing defenses that neutralized legacy domain fronting techniques, making attacks largely invisible to security measures. The vulnerability is currently under active exploitation, with potential for AI-driven malware campaigns to scale attacks significantly. ADAMnetworks has initiated responsible disclosure, collaborating with industry partners to develop detection tools and provide real-time vulnerability checks for domain owners. The exploit's ability to evade protective DNS mechanisms poses a critical risk to internet infrastructure.

Key Points: • Underminr affects around 88 million domains, primarily in the US, Canada, and the UK. • The vulnerability allows attackers to hijack brand reputations by manipulating web requests. • Active exploitation is ongoing, with potential for AI-driven malware campaigns to escalate attacks.

ThreatCluster AI

Timeline

2026-05-21
ADAMnetworks announces Underminr vulnerability
ADAMnetworks reveals the Underminr vulnerability affecting 88 million domains, with active exploitation reported.
Morningstar
2026-05-21
Research findings published
ADAMnetworks publishes findings on Underminr, detailing its impact and similarities to legacy domain fronting.
Streetinsider
2026-05-21
Collaboration for detection tools initiated
ADAMnetworks collaborates with industry partners to create detection tools for Underminr evasion attempts.
Morningstar

Community

Browse all →