← Return to All Videos

DNS Inspector is a DNS penetration testing system.

Delivering security vulnerability visibility to your external DNS from a malicious actor’s viewpoint.

DNS Security

Speaker: Peter LaMantia, CEO of Authentic Web


Introduction

Peter:
DNS Inspector exposes security gaps your teams don’t yet know exist. These are serious vulnerabilities, visible to anyone targeting your business.

Malicious actors constantly scan and enumerate DNS to map weaknesses. They then use that intelligence to compromise networks, steal data, or take entire systems offline. The problem is that these attackers are often better equipped than internal teams.

DNS Inspector levels the playing field by giving IT, digital, and security staff the same visibility tools that threat actors exploit—so you can see and close DNS exposures before they do.

Left unchecked, DNS risks can bring down critical services and damage customer trust. DNS Inspector is a penetration‑testing and reporting system built to help teams discover, investigate, resolve, and verify DNS vulnerabilities quickly and easily.


How DNS Inspector Works

We run proprietary testing probes to uncover and display vulnerabilities including, but not limited to:

  • Orphaned DNS and dangling CNAMEs
  • Insecure redirects and destination chains
  • Missing or invalid SPF, DMARC, and DNSSEC configurations

The probes collect details about your entire domain portfolio and DNS infrastructure—identifying:

  • Active registrars
  • Managed DNS services
  • IP addresses at the apex
  • Secondary DNS coverage for business continuity

With DNS Inspector, teams finally get the visibility needed to gain and keep control of an evolving DNS network. Without tools like this, investigations are time‑consuming and inconsistent—so they often don’t happen at all. We make it easy by delivering actionable intelligence.


Inside the Platform

Let’s take a look.
(Domains shown here are obfuscated because this is live data.)

When you subscribe to DNS Inspector, we load your domain portfolio and automatically run a full penetration‑test audit.
On login, you’ll see results in a dashboard with severity levels highlighting priority and urgency.

The audit covers categories such as:

  • HTTP/HTTPS
  • Redirect chains
  • Dangling CNAMEs
  • Lame delegations
  • SPF, DMARC, and DNSSEC

Each test shows whether the record exists, is correctly provisioned, and passes compliance checks.

At the infrastructure layer, DNS Inspector reports:

  • Where domains are registered
  • What DNS services are active
  • Enumerated IPs at the apex
  • Presence of redundant secondary DNS networks

You’ll also see the date of the last scan and can re‑run the audit after making changes to confirm vulnerabilities are closed.


Reviewing Results

Your team can investigate each domain flagged for review.
We display the conditions explaining why a probe is marked CriticalWarning, or Normal.

For every domain, DNS Inspector shows:

  • IP address
  • HTTP status code
  • TLS version and cipher information
  • Certificate and header details
  • Secure or insecure classification

If you subscribe to Authentic Web’s Domain Name Asset Manager service, you’ll be able to edit DNS records directly from this view—helping you fix and verify issues in one session.

The goal is simple: get every indicator green.
When a category is green, you can drill deeper to view certificate and performance details. All data can be exported to CSV, giving IT teams a complete record for auditing or internal reporting.

For example, the Redirects module lists the number and URLs of network hops, providing both security validation and performance insight.

One of my favorite aspects of DNS Inspector is how quickly you can see your improvements. After fixing issues, re‑run the audit and watch those indicators turn green—it’s gratifying, but more importantly, proves compliance and risk reduction in real time.


Infrastructure View

In the infrastructure tab, change‑management and access‑control visibility are vital.
You can easily review:

  • Where all domains are registered
  • Which managed DNS servers are serving records
  • Which IPs are in use, shown by geolocation and organization ownership

Tasks that once took weeks and hundreds of IT hours can now be completed in minutes—discover, investigate, remediate, and verify.
As teams make changes over time, DNS Inspector helps enforce continuous compliance and security policies.


Why DNS Inspector Is Different

Most DNS tools are large data lakes mixing live and stale information. That noise makes it nearly impossible for even skilled admins to isolate relevant threats. Hours of manual investigation often end in frustration and inaction.

DNS Inspector is different.

  • It automates discovery and focuses only on current, relevant data.
  • It’s simple—designed for practical use by IT and security teams.
  • Its results are actionable and verifiable, eliminating guesswork.

Simplification is the key—and little about DNS is simple until now.


Summary and Next Steps

Authentic Web provides modern control‑system tools to manage domains, DNS, and TLS certificates, uniting teams around control, visibility, and automation in a single interface.

DNS Inspector is your first step toward understanding and protecting your DNS environment.
You are exposed—you just don’t know where until you look.

This is the penetration‑testing system built to help you discover, analyze, and remediate DNS risk.

Contact us to subscribe. Within 24 hours you’ll know your vulnerabilities, receive a free security assessment, and get a guided remediation plan.

We look forward to helping you find and fix your DNS exposures.