Privacy controls
CyberFurl can load analytics only after you opt in. Core product features work without analytics consent.
Use the learn hub to move from raw findings into operator-ready understanding across DNS, email, web security, and attack-surface exposure.
Structured as one dynamic MDX system so new topics ship fast without route sprawl.
Email, DNS, web security, and threat exposure.
Topic cluster
Browse the email security articles in this cluster.
what is dmarc
Stop email spoofing and BEC fraud with DMARC p=reject. Learn SPF/DKIM alignment, aggregate reporting, and the safe rollout path required by Google, Yahoo, and PCI-DSS v4.0.
what is spf
Fix SPF record errors before they break email deliverability. Covers the 10-DNS-lookup limit, softfail vs hardfail, stale vendor includes, and how SPF aligns with DMARC enforcement.
what is dkim
DKIM cryptographic signing is mandatory for Google and Yahoo bulk sender compliance. Learn key rotation, selectors, 1024-bit vs 2048-bit tradeoffs, and how to debug signature failures.
Topic cluster
Browse the dns security articles in this cluster.
what is dnssec
Learn how DNSSEC adds authenticity to DNS answers and why deployment errors still matter.
dns zone walking
Understand how NSEC-based zone walking can expose DNS inventory and operational clues.
dns cache poisoning
See how forged or manipulated DNS responses can redirect traffic and break trust.
dns hijacking
Topic cluster
Browse the web security articles in this cluster.
what is csp
Review how CSP constrains browser execution and where policy design commonly breaks.
what is hsts
Understand how HSTS pins browsers to HTTPS and what settings matter for preload and subdomains.
x-frame-options
Learn how framing protections reduce clickjacking on public web applications.
what is referrer policy
Topic cluster
Browse the threat exposure articles in this cluster.
subdomain takeover
Understand how unclaimed third-party resources and stale DNS combine into takeover risk.
what is credential stuffing
See how reused credentials from breaches turn into login abuse against public applications.
what is typosquatting
Learn how lookalike domains exploit user mistakes and brand trust for phishing and abuse.
Topic cluster
Browse the compliance articles in this cluster.
what is soc2
A deep dive into SOC 2 Type II trust services criteria, audit preparation, and continuous compliance.
what is iso27001
Learn how to implement an ISMS and map Annex A controls for ISO 27001 certification.
what is nist csf
Understand the NIST Cybersecurity Framework core functions and how to measure organizational maturity.
what are cis controls
what is bimi
Display your verified brand logo in Gmail, Apple Mail, and Yahoo. BIMI requires DMARC p=quarantine or p=reject plus a Verified Mark Certificate (VMC). Full requirements and failure guide.
Learn how registrar, NS, or record-level changes can redirect web or mail traffic silently.
See how referrer handling can leak URLs, tokens, or user context across origins.
what is a data breach huge
Review the operational and financial realities of breaches and why early detection matters.
Review the Center for Internet Security (CIS) Critical Security Controls and Implementation Groups.