TLD ISAC Conference 2024 concludes with key insights on DNS security and supply chain security management

20-11-2024

The European TLD ISAC (Top-Level Domain Information Sharing and Analysis Centre) successfully hosted its annual conference, welcoming 84 in-person and 30 online participants to discuss critical topics ranging from vulnerability disclosure to supply chain security. The event featured a range of expert speakers who shared their perspectives on the latest challenges and solutions in the cybersecurity landscape.

Tom Keller (DENIC) and Dirk Jumpertz (EURid) welcomed participants on behalf of the European TLD ISAC Steering Committee and Working Group.

The conference kicked off with renowned ethical hacker Inti De Ceukelaire, Chief Hacker Officer at Intigriti, who shared real-world examples of DNS vulnerabilities and practical solutions.

Simon Whittaker, Co-founder & CEO at Vertical Structure, highlighted the lessons learned from WannaCry and the ongoing risks associated with cybersecurity research.

The ubiquitous NIS2 Directive and the Belgian Cybersecurity Centre's compliance approach were presented by its director, Johan Klykens.

Swiss cybersecurity expert Marc Henauer provided a governmental and international perspective on the vital role of TLDs in the internet's public core.

Experts from the .SE and .DE registries, Catharina Ankre and Andreas Musielak, alongside registrar Patrick Hauss (CSC) and Johan Klykens, explored diverse definitions and approaches to supply chain management in a panel discussion moderated by Dirk Jumpertz.

Aris Adamantiadis offered a live demonstration and insights into his research project on domain dumping through DNSSEC and its implications.

This was followed by a presentation from Stefan Ubbink on how SIDN handles vulnerability management. Harrison Cattell from Nominet spoke about enhancing cybersecurity through internal DNS logging and monitoring.

Ulrich Wisser of ICANN introduced KINDNS, a community-driven effort to establish best practices for DNS operations.

Andrija Višić, Senior Manager at ETIS, concluded the full programme by outlining best practices for ISAC development within the telecommunications sector.

Regrettably, Lars-Johan Liman from NetNod was unable to attend, but we hope to welcome him next year.

The conference underscored the importance of cross-sector collaboration to strengthen cybersecurity resilience. Participants left with actionable insights into managing supply chain risks, improving DNS robustness, and fostering community-driven solutions.

The day concluded with closing remarks by Robert Schischka (nic.at) and Kristof Tuyteleers (DNS Belgium). Both Kristof and Dirk skilfully moderated the sessions throughout the day. None of this would have been possible without the invaluable support of CENTR's Andreia and Diana.