logo

Researchers Hijack Hacker Domain Using Name Server Delegation

ID: 8eb9666c-73f6-5e0d-afde-b29f273780a3

STIX ID: report--8eb9666c-73f6-5e0d-afde-b29f273780a3

Feed Name: GBHackers

Threat Score
50/100

Date Published: 2026-01-19

Date Updated: 2026-04-22

Author: Mayura Kathir

...
...

Infoblox researchers leveraged a DNS misconfiguration technique called 'Sitting Ducks' to claim abandoned domains used by a large-scale malicious push-notification ad network, capturing over 57 million unencrypted logs across ~120 domains and revealing global deceptive campaigns that impersonated financial brands and targeted primarily South Asia; the findings highlight weak DNS hygiene enabling domain hijacking and ongoing fraudulent push notification abuse.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.