Connect with us

Technology

Most parked domains now push scams and malware

Published

on

Most parked domains now push scams and malware

NEWYou can now listen to Fox News articles!

Typing a web address directly into your browser feels harmless. In fact, it feels normal. But new research shows that a simple habit is now one of the riskiest things you can do online. A recent study from cybersecurity firm Infoblox reveals a troubling shift.

Most parked domains now redirect visitors to scams, malware or fake security warnings. In many cases, this happens instantly. You do not have to click anything. That means a single typo can expose your device.

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

What are parked domains? 

Parked domains are unused or expired web addresses. Many exist because someone forgot to renew a domain. Others are deliberate misspellings of popular sites like Google, Netflix or YouTube. For years, these domains displayed harmless placeholder pages. They showed ads and links to monetize accidental traffic. While annoying, they rarely posed serious danger. That is no longer true. Infoblox found that more than 90 percent of visits to parked domains now lead to malicious content. This includes scareware, fake antivirus offers, phishing pages and malware downloads.

Advertisement

A single mistyped web address can redirect you from a trusted site to a dangerous parked domain in seconds, Kurt Knutsson writes. (PeopleImages/Getty Images)

Why direct navigation has become so risky

Direct navigation means typing a website address by hand instead of using a bookmark or search result. One missing letter can change everything. For example, mistyping gmail.com as gmai.com does not trigger an error. Instead, it can deliver your email straight to criminals. Infoblox found that some of these typo domains actively run mail servers to capture messages. Even worse, many of these domains form part of massive portfolios. One group tracked by Infoblox controlled nearly 3,000 lookalike domains associated with banks, tech companies and government services.

Malicious parked domains often trigger fake security warnings or hidden redirects without requiring any clicks. (CyberGuy.com)

How these domains decide whom to attack

Not everyone sees the same thing when visiting a parked domain. That is intentional. Researchers discovered that parked pages often profile visitors in real time. They analyze IP address, device type, location, cookies and browsing behavior. Based on that data, the domain decides what you see next. Visitors using a VPN or non-residential connection often see harmless placeholder pages. Residential users on phones or home computers get redirected to scams or malware instead. This filtering helps attackers stay hidden while maximizing successful attacks.

Why parked domain scams are increasing

Several trends are fueling the problem. First, traffic from parked domains is often resold multiple times through affiliate networks. By the time it reaches a malicious advertiser, there is no direct relationship with the original parking company. Second, recent ad policy changes may have increased exposure. Google now requires advertisers to opt in before running ads on parked domains. While intended to improve safety, this shift may have pushed bad actors deeper into affiliate networks with weaker oversight. The result is a murky ecosystem where responsibility is difficult to trace.

Advertisement

Even government domains are being targeted

Infoblox also found typosquatting aimed at government services. In one case, a researcher accidentally visited ic3.org instead of ic3.gov while trying to report a crime. The result was a fake warning page claiming a cloud subscription had expired. That page could just as easily have delivered malware. This highlights how easy it is to fall into these traps, even when doing something important.

A screenshot shows how mistyping the FBI’s IC3 web address redirects users to an unrelated parked domain. (Infoblox)

Ways to stay safe from parked domain traps

You can reduce your risk with a few smart habits:

1) Use bookmarks for important sites

Save banks, email providers and government portals. Avoid typing these addresses manually.

2) Double-check URLs before hitting Enter

Slow down when entering web addresses. One extra second can prevent a costly mistake.

Advertisement

3) Install strong antivirus software

Strong antivirus software protects your device if a malicious page loads, blocking malware downloads, scripts and fake security pop-ups.

The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.

Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com.

4) Consider a data removal service

Data brokers often fuel targeting by selling personal details. Removing your data can reduce exposure to personalized scam redirects.

While no service can guarantee the complete removal of your data from the internet, a data removal service is really a smart choice. They aren’t cheap, and neither is your privacy. These services do all the work for you by actively monitoring and systematically erasing your personal information from hundreds of websites. It’s what gives me peace of mind and has proven to be the most effective way to erase your personal data from the internet. By limiting the information available, you reduce the risk of scammers cross-referencing data from breaches with information they might find on the dark web, making it harder for them to target you.

Advertisement

Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com.

Get a free scan to find out if your personal information is already out on the web: Cyberguy.com.

5) Be cautious of scare tactics

Fake warnings about expired subscriptions or infected devices are a major red flag. Legitimate companies do not use panic screens.

6) Keep your browser and device updated

Security updates often close the exact loopholes attackers use to exploit malicious redirects.

7) Consider a VPN for added protection

While not a cure-all, VPNs can reduce exposure to targeted redirects tied to residential IP addresses.

Advertisement

For the best VPN software, see my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android and iOS devices at Cyberguy.com.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Kurt’s key takeaways 

The web has changed in subtle but dangerous ways. Parked domains are no longer passive placeholders. In many cases, they act as active delivery systems for scams and malware. The most alarming part is how little effort it takes to trigger an attack. A typo is enough. As threats grow quieter and more automated, safe browsing habits matter more than ever.

Have you ever mistyped a web address and ended up somewhere suspicious, or do you rely entirely on bookmarks now? Let us know by writing to us at Cyberguy.com.

Sign up for my FREE CyberGuy Report

Advertisement

Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter. 

Copyright 2025 CyberGuy.com. All rights reserved.

Advertisement
Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Technology

Xbox shakeup: Phil Spencer and Sarah Bond are leaving Microsoft

Published

on

Xbox shakeup: Phil Spencer and Sarah Bond are leaving Microsoft

After nearly 40 years at Microsoft, Xbox chief and Microsoft Gaming CEO Phil Spencer is leaving the company, along with Xbox president Sarah Bond. Spencer’s retirement was announced in a memo from Microsoft CEO Satya Nadella on February 20th, stating, “Last year, Phil Spencer made the decision to retire from the company, and since then we’ve been talking about succession planning.”

Follow along below for the latest updates on Microsoft’s Xbox leadership changes

Continue Reading

Technology

The robotaxi price war has started. Here’s everything you need to know.

Published

on

The robotaxi price war has started. Here’s everything you need to know.

NEWYou can now listen to Fox News articles!

Right now, in several American cities, you can open an app, and a car with no driver pulls up and takes you wherever you want to go. No small talk. No wrong turns. No tip. No perfume covering up the cigarette smells.

A driverless Waymo ride in San Francisco averages $8.17. A human Uber in the same city? $17.25. The robotaxi price war is here.

CONGRESS MOVES TO SET NATIONAL RULES FOR SELF-DRIVING CARS, OVERRIDING STATES

I live in Phoenix most of the time, and I see Waymos everywhere. At the grocery store. On the freeway. Sitting at red lights with nobody behind the wheel, just vibing. I still haven’t gotten in one. But I’m giving myself two weeks.

Advertisement

If I survive, I’ll share the ride. Mostly kidding.

A Waymo drives across Congress Avenue on 8th Street in front of the Capitol Building as rain arrives in the Austin area on Friday, Jan. 23, 2025 ahead of anticipated drops in temperature and freezing rain over the weekend.  (Sara Diggins/The Austin American-Statesman via Getty Images)

Who’s on the road?

Waymo (owned by Google’s parent Alphabet) is the clear leader. It gave 15 million driverless rides in 2025, and today, it’s about 400,000 per week. Valued at $126 billion. Available in Phoenix, San Francisco Bay Area, Los Angeles, Austin, Atlanta and Miami. Coming in 2026: Dallas, Denver, DC, London, Tokyo and more.

WOULD YOU BUY THE WORLD’S FIRST PERSONAL ROBOCAR?

Tesla launched in Austin last June but is way behind. Roughly 31 cars. One tester took 42 trips, and every single one still had a safety monitor on board. So supervised.

Advertisement

Zoox (owned by Amazon) is the wild card. Their pod has no steering wheel and drives in both directions. Rides are free in Vegas and San Francisco while they wait for approval to charge.

A Cruise vehicle in San Francisco, California, U.S., on Wednesday Feb. 2, 2022. Cruise LLC, the self-driving car startup that is majority owned by General Motors Co., said its offering free rides to non-employees in San Francisco for the first time, a move that triggers another $1.35 billion from investor SoftBank Vision Fund. Photographer: David Paul Morris/Bloomberg via Getty Images

How do these things ‘see’?

Waymo uses cameras, lidar (laser radar that builds a 3D map around the car) and traditional radar. It works in total darkness and heavy rain. Tesla uses cameras only. Eight of them, no lidar. Cheaper, which is how they offer rides at $1.99 per kilometer. 

Now, are they safe? 

WAYMO UNDER FEDERAL INVESTIGATION AFTER CHILD STRUCK

Advertisement

Tesla has reported seven crash incidents to regulators since launching. Waymo says it has 80% fewer injury crashes than human drivers. But NHTSA has logged 1,429 Waymo incidents since 2021, 117 injuries, two fatalities. Three software recalls, including one last December for passing stopped school buses. 

A friend of mine took a Waymo, and it dropped her off a full mile from where she was going. No way to change it. No human to flag down. Just a robot car that said, “You have arrived.” 

She had not. So yeah. I’m curious. But I’m also cautious.

A Tesla Inc. robotaxi on Oltorf Street in Austin, Texas, on Sunday, June 22, 2025. The launch of Tesla Inc.’s driverless taxi service Sunday is set to begin modestly, with a handful of vehicles in limited areas of the city.  (Tim Goessman/Bloomberg via Getty Images)

Here’s where it gets spicy

When a robotaxi gets confused, a human in a remote center sees through the car’s cameras and draws a path for it. At a Senate hearing on Wednesday, Feb. 4, Waymo admitted some of those helpers are in the Philippines. Senators were not amused. I wasn’t either.

Advertisement

Your car sits parked 95% of the time. Robotaxis run 15+ hours a day. When a driverless ride costs less than gas and insurance, owning a car feels like a gym membership you never use.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP    

The future of driving is nobody driving. Steering us in a whole new direction.

Know someone who still thinks self-driving cars are science fiction? Forward this. They’re in for a ride.

Copyright 2026, WestStar Multimedia Entertainment. All rights reserved.

Advertisement

Continue Reading

Technology

Nintendo turned its biggest flop into an expensive, uncomfortable novelty

Published

on

Nintendo turned its biggest flop into an expensive, uncomfortable novelty

I’ve written about a lot of different video game hardware over the years, from new consoles to retro gadgets to whatever you want to call the Playdate. But I can’t remember ever being perpetually sore from testing a device; such are the joys of the Virtual Boy. Nintendo has turned its biggest flop into an accessory for the Switch, but the costs involved — to your wallet, eyes, and neck — make it a tough sell. Much like the original, this is a novelty for Nintendo sickos only.

First released in 1995, the original Virtual Boy looked like a VR headset but wasn’t actually VR or a headset. Instead, the console offered stereoscopic 3D games that you viewed through a pair of bulky goggles that were propped up on a stand. It also rendered games in eye-searing red and black, making for an experience that had some potential but was ultimately ugly and uncomfortable. It was a flop and was discontinued after just a year, amassing a library of less than two dozen games.

Now Nintendo has brought that same experience to the Switch. Virtual Boy games have been added to the Nintendo Classics collection of retro games available to Switch Online subscribers this week, but the twist is, because of the unique nature of the original hardware, you need to buy an accessory to actually play them. There’s a plastic re-creation of the Virtual Boy that’ll run you $100, which is what I’ve been using, as well as a cheaper cardboard headset that’s a much more reasonable $25. Either way, you’ll need both a subscription and an accessory to play these games.

Technically the games will run in portable mode without one of the accessories connected, but without the magnifying goggles, they’re displayed so small that they’re essentially unplayable. It looks something like this:

Can you tell what Virtual Boy game I’m playing here?
Image: Nintendo
Advertisement

The plastic Virtual Boy looks like the original hardware, complete with a fake controller port and volume dial. But really it’s an elaborate Switch (or Switch 2) case that turns it into something resembling a Virtual Boy. It works like this: The top of the Virtual Boy opens up, letting you slot in a Switch, sans Joy-Con controllers, inside. When you close it up, the Switch becomes the console powering the Virtual Boy-like experience. Look through the goggles, and you’re awash in pixelated reds and blacks (though other colors will be available post-launch).

Since you don’t wear it strapped to your face, the Virtual Boy doesn’t have the same problems as a typical VR headset, where you’re supporting a bunch of weight on your head. But it’s still far from comfortable in my experience. The stand is adjustable so you can change the angle of the goggles, but I had a hard time finding an optimal viewing angle, despite trying to play it lots of different ways. And man, those red graphics; they were hard to look at in the ’90s, and things haven’t improved much. The Virtual Boy is a system where you need to take frequent breaks to save your eyes and neck. Don’t make the same mistakes I did.

All that said, the Virtual Boy’s lineup is surprisingly interesting to play in 2026. There are seven titles available at launch, and while there are a few duds — I just can’t seem to wrap my head around the first-person robot fighter Teleroboxer — I’ve really been enjoying playing 3D Tetris, Galactic Pinball, and the space shooter Red Alarm. The standout might be Wario Land, a fairly straightforward and occasionally clunky platformer but with 3D elements like enemies that jump out right in front of you, making things feel more tense. It’s not a huge lineup by any stretch, but it gives you a good sense of what the Virtual Boy is all about. Which is to say, there are some solid games with neat 3D gimmicks that are fun in short doses. (Why the tentpole Mario’s Tennis isn’t available at launch, especially given the recent release of Mario Tennis Fever, is a mystery to me.)

Nintendo tends to have a complicated relationship with its own history, often glossing over its failures and doing a poor job of celebrating what makes its games so important. So on one hand, the existence of this Virtual Boy seems like something of a miracle. Few people had a chance to play the original, and here it is available through Nintendo’s most successful platform ever. But it’s also a product that requires jumping through a lot of hoops for a small amount of payoff. And since it’s tied to NSO, you’re spending $100 to play games only for as long as you have a subscription or the service is active. After that, you have a costly paperweight.

The Switch version of the Virtual Boy is a device that’s weird, awkward, and of limited appeal — which, now that I think about it, perfectly re-creates the experience of the original.

Advertisement
Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

Continue Reading

Trending