Admin 3 months ago
TheBAG819

DNS HIJACKING

What is DNS Hijacking ?

Domain name server (DNS) hijacking is also called DNS redirection. It is a type of DNS attack in which DNS queries are resolved incorrectly in order to redirect users to malicious sites unexpectedly. During the attack, the attacker can install malware on users' computers, hijack routers, interrupt or hack DNS communication.

DNS hijacking can be used for pharming or phishing.

Many Internet Service Providers (ISPs) use some form of DNS hijacking to hijack DNS requests, collect statistics, and return advertisements when accessing unknown domains.

Some governments and administrators use DNS hijacking for censorship so that users are directed only to government-authorized sites.

Types of DNS Hijacking Attacks

There are four basic types of DNS redirection or hijacking :

  • Local DNS hijack :

Attackers install Trojan software on the victim's computer and change local DNS settings to redirect to malicious websites.

  • Router DNS Hijack :

Many routers have default passwords or firmware vulnerabilities. Therefore, Attackers can take control of a router and thus overwrite DNS settings, affecting all users connected to the router.

  • Man in the middle DNS attack :

In this type of attack, which is one of the most preferred methods, attackers capture the user's DNS requests and interrupt the communication between the user and the DNS server and set IP addresses with different targets that mark malicious sites, that is, direct them to their own DNS server.

  • Rogue DNS Server :

In this method, the attacker hacks the DNS server and changes DNS records to redirect DNS requests to malicious sites.

Now that we have knowledge about DNS hijacking i will talk about DNS Spoofing attacks and how to protect against in next post .

0
464
One liner bug hunting tools

One liner bug hunting tools

defaultuser.png
X0NE
9 months ago
Mist HTB Writeup | HacktheBox

Mist HTB Writeup | HacktheBox

https://lh3.googleusercontent.com/a/ACg8ocIkM8EGIx0gz9GUP_nM6_sMxivr6876Wp0e9MAp6mGc=s96-c
xone
1 month ago
Protect Yourself against Website Server Attacks

Protect Yourself against Website Server Attacks

defaultuser.png
Admin
3 months ago
my  name is

my name is

defaultuser.png
lazyhacker
10 months ago
Zphisher graphic extension

Zphisher graphic extension

defaultuser.png
Admin
3 months ago