Skip to content
arrow_back
search
ISM-1432 policy ASD Information Security Manual (ISM)

Protect Online Services from Domain Hijacking

Ensure online service domain security by locking registration and verifying details.

record_voice_over

Plain language

This control is about making sure your online business or service stays under your control, avoiding a situation where someone else takes over your domain name. Imagine if someone hijacked your website's address; customers could be misled, and your reputation could be damaged. It’s important to lock your domain and confirm all registration details to prevent this from happening.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Domain names for online services are protected via registrar locking and confirming that domain registration details are correct.
policy ASD Information Security Manual (ISM) ISM-1432
priority_high

Why it matters

Without registrar lock and accurate registrant details, attackers can hijack domains, redirect users to fake sites, and damage trust and revenue.

settings

Operational notes

Enable registrar lock, restrict registrar account access, and regularly verify registrant/admin contact details and DNS settings match expected values.

Mapping detail

Mapping

Direction

Controls