This CISA Program Blocked Over 1B Threats to Critical Networks
The agency processes more than 3 billion DNS queries daily with a cyber program that is fortifying network resiliency across government.

The Cybersecurity and Infrastructure Security Agency (CISA) is scaling threat intelligence and fortifying network resilience with its Protective Domain Name System Resolver service in use across federal agencies, hospitals, schools and local utility facilities, officials said this week.
The program protects critical networks by blocking billions of Domain Name System (DNS) queries daily across all federal civilian executive branch agencies, officials said. To achieve this mission, CISA is leveraging industry partnerships and Cloudflare to tap into the scalability of Amazon Web Services’ GovCloud, according to Protective DNS Service Product Manager Christopher Villas.
“The system processes over 3 billion DNS queries a day and has provided over 700 billion blocks,” Villas said at the AWS Summit in Washington, D.C., Wednesday. “The scale that we’re operating at to generate passive DNS on over 3 billion records a day just wasn’t possible without this cloud-native solution.”
With a cloud-first architecture and AWS to host the management application, the program enables CISA to use several sources of threat intelligence, which has enhanced incident detection and response capabilities.
CISA and its parent agency, Department of Homeland Security, are also leveraging the data platform to obtain DNS traffic from all agencies, simplifying the process to find trends impacting the entirety of the federal government, rather than one agency at a time.
Villas said that the service was first piloted by critical infrastructure partners across the U.S. with a focus on health care, water utilities and power generation.
In less than two years, the program has enabled major enterprises to scale rapidly and meet evolving data storage needs effectively, benefiting over 110 agencies, Villas said.
“Transitioning off the legacy service to Protective DNS was a significant level of change for the [U.S. Postal Service], [the Department of Veterans Affairs] and [the Department of Health and Human Services],” Villas said. “But with the program’s new abilities, these large enterprises with complex setups that have multiple subcomponents can use the services for their own benefit.”
With the surge of cyberthreats from espionage groups like Volt Typhoon, Villas emphasized the growing rate of private-sector partnerships that are using Protective DNS. He explained that many organizations are seeking to deploy the program to obtain the same level of defense given to federal agencies.
“These entities are under attack from adversaries that are also targeting the federal government,” Villas said. “We were really thrilled to be able to bring and scale this [program] to accommodate an entirely new customer segment that’s under a significant threat.”
This is a carousel with manually rotating slides. Use Next and Previous buttons to navigate or jump to a slide with the slide dots
-
The Next AI Wave Requires Stronger Cyber Defenses, Data Management
IT officials warn of new vulnerabilities posed by AI as agencies continue to leverage the tech to boost operational efficiency.
5m read -
Federal CIOs Push for ROI-Focused Modernization to Advance Mission Goals
CIOs focus on return on investment, data governance and application modernization to drive mission outcomes as agencies adopt new tech tools.
4m read -
DOD Can No Longer Assume Superiority in Digital Warfare, Officials Warn
The DOD must make concerted efforts to address cyber vulnerabilities to maintain the tactical edge, military leaders said at HammerCon 2025.
4m read -
Marine Corps Operation StormBreaker Slashes Software Delivery Timelines by 17x
New program aims to deliver critical digital capabilities to warfighters at the "speed of relevance" by overhauling traditional processes.
4m read -
Tracking CIOs in Trump's Second Term
Stay informed on the latest shifts in federal technology leadership as new CIOs are appointed and President Trump's second term takes shape.
6m read -
Inside Oak Ridge National Lab’s Pioneer Approach to AI
Energy Department’s Oak Ridge National Lab transforms AI vulnerabilities into strategic opportunities for national defense.
22m listen -
Modernization Strategies to Enable Energy Innovation
Lawrence Berkeley National Lab and Maximus experts explore the modernization strategies driving digital transformation and operational resilience within the energy sector.
33m watch -
DOE National Labs Launch New AI Tools for Operational Efficiency
The Energy Department's National Laboratories are using AI to increase operational efficiency and drive research efforts forward.
3m read -
Software Factories Accelerate Federal Modernization Outcomes
IT leaders from Nutanix and SAIC explain how software factories streamline tech development, modernize legacy systems and accelerate adoption of emerging technologies like AI.
34m watch -
AI in Top-Secret Clouds Is a ‘Game Changer’ for IC, DNI Says
Tulsi Gabbard touts significant improvements in AI, data analysis, interoperability and operational intelligence at the AWS Summit 2025.
3m read -
AWS Summit: Innovation Accelerates IT Delivery at DOD
Marine Corps Community Services is tackling outdated IT processes with agile development and cutting-edge cloud security to deliver mission-critical capabilities faster.
12m watch -
AWS Summit: NIST Secures High-Performance Computing Against Evolving Threats
NIST’s Yang Guo reveals the broad attack surface of high-performance computing and explains developing guidance and future-proofing security strategies.
9m watch