BlockSec Research reported an audit of DNS configurations for 100 leading DeFi domains. According to the research firm, 72% of them lack a CAA record, and 47% fail DNSSEC validation.

The company links these gaps to the risk of frontend hijacking, through which users interact with Web3 services. The available description does not specify the particular domains, the timeframe of the audit, or specific attack scenarios.

The practical context for DeFi teams is to verify the presence of CAA records and the correctness of DNSSEC for their domains. However, the source material is presented only as a brief summary by BlockSec Research, so its findings lack independent confirmation in the provided package.