In Case You Missed It
Last month’s product updates can be found in April’s communication.
INFOBLOX ANNOUNCEMENT
Infoblox recently announced the acquisition of Axur, a global provider of AI-powered external threat discovery and digital risk protection. With the close of the acquisition, Infoblox expands its preemptive security capabilities to address a growing class of threats that originate outside the traditional enterprise perimeter, enabling organizations to identify and stop threats sooner. Read the blog from our CEO to learn more about this exciting news.
Now Available
- Infoblox Portal: Enhanced Navigation Experience
- Infoblox Universal DDI Management™:
- IPAM Data Export
- DNS Alias Records for NIOS
- NIOS-X / NIOS-X as a Service:
- Infoblox Universal DDI Management: DNS Alias Records for NIOS
- NTP and Anycast Service Log Support
- Infoblox Universal Asset Insights™:
- Expanded Visibility across IoT, Security and SaaS
- Zebra Device Visibility in Infoblox Labs
- Expanded User to Asset Association
- Infoblox Threat Defense™: Detection Mode for Microsoft DNS
- Ecosystem:
- Infoblox Managed Rules for AWS Network Firewall
- New NIOS Automation Capabilities: Terraform Provider and NIOS Go Client
Coming Soon
- Infoblox Universal DDI Management
- Simplified DNS Zone to Server Configuration
- DHCP Shared Networks
- Dnstap Support
- Reduce Cloud Sync Interval
- NIOS-X and NIOS-X as a Service:
- NIOS-X Local Logging Support using TCP/TLS
- Auto Rightsizing
- Lease Migration
- Infoblox Universal Asset Insights: Expanded Discovery Coverage
- Ecosystem:
- DNS Alias Records for NIOS
- NIOS-X Servers on Equinix Network Edge Marketplace
Infoblox Threat Intel
- Scams, Slaves and (Malware-as-a) Service: Tracking a Trojan to Cambodia’s Scam Centers
- No Reach, No Risk: The Keitaro Abuse in Modern Cybercrime Distribution
INFOBLOX PORTAL
Enhanced Navigation Experience
Now Available
The Infoblox Portal now features a redesigned navigation experience built around key workflow areas, including networking, assets, security, integrations and administration, so you can quickly access the products and tasks that matter most. The updated structure reduces complexity and helps you move faster and work more efficiently. Log in to the Infoblox Portal to explore the updated navigation.
NETWORKING
Infoblox Universal DDI Management™: IPAM Data Export
Now Available
Universal DDI now lets you export IP subnets, ranges and addresses directly from the Infoblox Portal in CSV format so that you can analyze and manipulate the data in your own tools, such as Microsoft Excel. To learn more about IPAM Data Export, contact your Infoblox account team or visit the Universal DDI documentation.
Infoblox Universal DDI Management: DNS Alias Records for NIOS
Now Available
You can now manage DNS alias records for NIOS directly in the Infoblox Portal. Centralizing alias records in a single, consistent interface helps keep application endpoints pointed to the right services, reduces configuration drift and lowers the risk of errors and outages without switching between multiple DNS consoles.
NIOS-X as a Service: NTP and Anycast Service Log Support
Now Available
NIOS-X as a Service lets administrators view NTP and Anycast logs directly from the Service Logs page in the Infoblox Portal to troubleshoot issues faster. In addition, the new capability makes it easier to demonstrate compliance by capturing a clean, auditable history of who changed what, when, across the deployment. Visit the Universal DDI documentation page to learn more.
Infoblox Universal Asset Insights™: Expanded Visibility across IoT, Security and SaaS
Now Available
Infoblox Universal Asset Insights expands its discovery ecosystem with new secure API integrations for SentinelOne, Ordr and Zoom, extending visibility across endpoint security, IoT and collaboration platforms. These integrations continuously ingest current device, application and security telemetry, giving NetOps and SecOps teams a more complete view of assets across hybrid environments.
By correlating this data with DDI, Universal Asset Insights builds a single, trusted inventory. This helps you discover assets faster, improve IPAM accuracy, streamline CMDB reconciliation and quickly spot stale, unmanaged or misconfigured assets. Register here to try the new integrations as part of a free Infoblox Universal Asset Insights trial. For more information, visit the Infoblox Ecosystem Portal.
Infoblox Universal Asset Insights: Zebra Device Visibility in Infoblox Labs
Now Available
Zebra device discovery is now available in Infoblox Labs, providing automated visibility into Zebra mobile computers and printers through integration with Zebra VisibilityIQ APIs. Universal Asset Insights continuously discovers enrolled Zebra devices and ingests inventory and status data, including device models, operational states and lifecycle attributes.
By correlating these Zebra assets with DDI data, you gain richer context that improves asset accuracy, keeps records aligned with your enterprise asset management systems and helps teams troubleshoot issues and manage device lifecycles more effectively. Visit the Infoblox Labs page for additional information.
Infoblox Universal Asset Insights: Expanded User to Asset Association
Now Available
Universal Asset Insights extends existing Microsoft Active Directory user-to-asset association by incorporating additional discovery sources from CrowdStrike, Microsoft Defender, Microsoft Intune, Jamf Pro, ServiceNow, Cisco Meraki and HPE Aruba. By consolidating assigned owners and observed user device activity into a single user view, including last login, provider source and asset relationships, teams get richer identity context. This helps them investigate issues faster, close visibility gaps on shared devices and build a more complete picture of asset ownership and user activity.
Infoblox Universal DDI Management: Simplified DNS Zone to Server Configuration
Coming Soon
A redesigned DNS zone-to-server configuration experience is coming soon with an interface aligned to NIOS that makes it easier to assign DNS servers to zones. The updated experience lets you mix server types within a single zone, which provides more architectural and operational flexibility across environments. A clearer visual map of which zones are served by which DNS servers will improve visibility and reduce the risk of misconfiguration, which is especially important in hybrid environments where coordinated DNS service delivery is critical for resilience and consistency.
Infoblox Universal DDI Management: DHCP Shared Networks
Coming Soon
Upcoming DHCP shared networks support will enable users to allocate from a unified pool of IP addresses without expanding or renumbering existing networks. You will be able to add new subnets without disruption when existing ones run out of space, conserve fragmented address blocks and reduce routing and relay complexity with a single shared configuration.
Infoblox Universal DDI Management: dnstap Support
Coming Soon
High speed Dnstap based local logging is coming to Universal DDI, providing a new way to capture comprehensive DNS telemetry without the performance or storage overhead of traditional logging. By streaming full fidelity DNS activity, even in high volume environments, you can meet strict compliance and audit requirements and improve forensic visibility. You can also accelerate detection, analysis and response to DNS related threats.
Infoblox Universal DDI Management: Reduce Cloud Sync Interval
Coming Soon
The Infoblox Portal will soon deliver significantly faster synchronization of DNS record and zone changes from supported cloud DNS providers (AWS, Azure, Google Cloud, with more to come), giving you consistent and up-to-date visibility across Infoblox-managed and cloud-managed DNS. Faster sync helps reduce configuration drift and makes it easier to troubleshoot issues, validate changes, and rely on the portal as an accurate source of truth. This enhancement builds on our continuing work to maximize multi-cloud synchronization speed, narrowing the gap to true, real-time updates while keeping your view of DNS as current as possible.
Infoblox Universal DDI Management: NIOS-X Local Logging Support using TCP/TLS
Coming Soon
NIOS-X will soon support sending log data to your local syslog servers over TCP/TLS, extending logging beyond UDP based transport. This delivers more reliable and secure logging that strengthens your audit trail. It also simplifies integration with modern security and observability platforms that require stateful, encrypted syslog, while keeping all log data under your control.
NIOS-X as a Service: Auto Rightsizing
Coming Soon
NIOS-X as a Service will soon introduce automatic rightsizing for instances, enabling capacity to expand seamlessly as demand increases without manual resizing. This enhancement reduces license management, lowers administrative overhead and helps ensure server sizing keeps pace with growing workload requirements.
NIOS-X and NIOS-X as a Service: Lease Migration
Coming Soon
Reassigning subnets between servers during a planned migration or disaster recovery event has often meant risking service disruption and IP conflicts. Soon, when you reassign a subnet from one NIOS-X Virtual Server or NIOS-X as a Service instance to another, the active lease database will move with it automatically. Services stay up, devices keep their existing IP addresses wherever possible and you dramatically reduce the risk of duplicate IP assignments and unplanned outages.
Infoblox Universal Asset Insights: Expanded Discovery Coverage
Coming Soon
To provide deeper visibility into IP-connected assets across on-premises and hybrid cloud environments, including enterprise IoT devices, Universal Asset Insights will soon expand API based discovery. Upcoming integrations include:
- Fortinet FortiCloud
- Nozomi Networks
- Palo Alto Prisma
| - Tenable
- HPE Aruba Central (new integration)
|
|---|
These additional integrations further strengthen Universal Asset Insights as an authoritative source of truth for asset discovery, helping teams surface stale or misconfigured assets and manage complex hybrid environments with confidence. To learn more about these upcoming integrations and how they apply to your environment, review the Universal Asset Insights documentation.
Quick Links for Universal DDI
Quick Links for NIOS DDI
Subscribe to the Infoblox Status page to receive real-time notifications on maintenance upgrades.
SECURITY
Infoblox Threat Defense™: Detection Mode for Microsoft DNS
Now Available
Detection Mode for Microsoft DNS is now available for Infoblox Threat Defense, providing DNS-layer threat detection for Microsoft DNS environments without changing your DNS resolution path or adding latency. By ingesting Microsoft DNS Analytic Events directly from your domain controllers, Infoblox Threat Defense analyzes external DNS query responses from Microsoft DNS to identify malicious and suspicious activity while preserving true client IP attribution.
This is especially useful if you need to meet emerging guidance such as new NIST Protective DNS recommendations without changing resolution, or if you already use an inline DNS security solution and want to see additional threats it may miss. Detection Mode also provides fast visibility when you onboard new environments, such as recently acquired businesses, where you need DNS security coverage before you can change the architecture.
Quick Links for Security
Subscribe to the Infoblox Status page to receive real-time notifications on maintenance upgrades.
ECOSYSTEM
New NIOS Automation Capabilities: Terraform Provider and NIOS Go Client
Now Available
Two new NIOS enhancements make it easier to bring NIOS DDI operations into your infrastructure as code and DevOps workflows, reduce manual work and maintain consistent services across complex hybrid and multi-cloud environments.
Expanded Terraform Provider with UUID Support: The latest Infoblox Terraform provider now takes advantage of system-generated, immutable universally unique identifiers on NIOS objects, giving Terraform a stable way to reference and track DNS, DHCP and IPAM resources across their lifecycle. Instead of relying on fragile, human editable attributes, your Terraform configurations can use UUID backed identifiers to reduce drift and simplify module logic so your NetOps and DevOps teams can now manage automated NIOS resources with greater confidence and far less effort.
Updated NIOS Go Client: The Infoblox NIOS Go Client provides a library for interacting with NIOS through WAPI, so Go based applications and automation frameworks can directly manage DDI and Grid operations. The new release adds support for the latest software versions, including NIOS 9.1.0 and WAPI v2.14, UUID based API calls and additional DNS record types. These updates make it easier for developers to embed NIOS automation into Go services and continuous integration and delivery pipelines and keep automation code in sync with the network.
To get started, visit the Infoblox Terraform Provider and Infoblox NIOS Go Client repositories on GitHub, or contact your Infoblox account team for help integrating these capabilities into your automation strategy.
Infoblox Managed Rules for AWS Network Firewall
Now Available
Curated, predictive DNS driven rule groups can now be delivered directly into your AWS Network Firewall policies with no additional infrastructure required. These Suricata compatible rule groups are continuously refreshed with Infoblox predictive DNS threat intelligence, drawing on millions of indicators to provide preemptive security across your VPCs while keeping operations simple. To join the free preview, subscribe to Infoblox Managed Rules directly from the AWS Network Firewall console or via the AWS Marketplace.
NIOS-X Servers on Equinix Network Edge Marketplace
Coming Soon
Infoblox Universal DDI will soon let you deploy NIOS-X servers natively on Equinix Network Edge, delivering DDI services in minutes without any physical hardware. This expands existing Equinix support for vNIOS and Infoblox Threat Defense Essentials and allows organizations to roll out a broader suite of SaaS based DDI and security capabilities, including Infoblox Universal DDI Management and Infoblox Threat Defense Cloud. By placing critical DDI and security services closer to applications across hybrid and multi-cloud environments, this joint solution helps improve performance, resiliency and visibility.
INFOBLOX THREAT INTELLIGENCE
New Research Available
Infoblox Threat Intel is a leading creator of original DNS threat intelligence, with deep visibility into internet infrastructure that helps discover and disrupt threat activity others miss. The team uses this visibility to predict, uncover and block threat actors before they strike.
Visit the redesigned Infoblox Threat Intel microsite to access the latest research directly and stay up to date on new findings:
Scams, Slaves and (Malware-as-a) Service — Tracking a Trojan to Cambodia's Scam Centers: In collaboration with Vietnamese nonprofit Chong Lua Dao, Infoblox Threat Intel uncovered a sophisticated Android banking trojan tied to Cambodian scam compounds that use forced labor. The research describes a highly organized malware as a service ecosystem that registers dozens of spoofed domains each month, impersonates trusted institutions and enables device takeover, credential theft, biometric capture and financial fraud across more than twenty countries.
The findings expose a shift toward factory-like cybercrime, where centralized operators, service-based tooling and coerced workers drive large-scale global fraud that is difficult to disrupt. Visit the full blog to read more.
No Reach, No Risk — The Keitaro Abuse in Modern Cybercrime Distribution: In collaboration with Confiant, Infoblox Threat Intel examined how a range of threat actors abuse Keitaro, a legitimate advertising tracking platform, across a three-part research series. The work shows that modern cybercrime is often driven more by distribution than technical sophistication, as attackers rely on commercial adtech tools like Keitaro to reach victims at scale for investment scams, phishing and malware delivery.
The final installment also examines how structural advantages like easy domain churn and ready-made tooling make detection and disruption efforts complex, and how provider engagement can lead to some takedowns, even as the scale and speed of abuse remains a persistent challenge. Visit the full blog to read more.