A unique name server linked to Iran-nexus cyber activity reveals a broader set of malicious name servers with potential nation-state ties. Learn how passive DNS data connects a single typosquatting domain to multiple name servers being used for malware distribution.