Sitting Ducks DNS attacks let hackers hijack over 35,000 domains
ID: b56ff1d0-73f5-5233-b5cd-0433d033cde0
STIX ID: report--b56ff1d0-73f5-5233-b5cd-0433d033cde0
Feed Name: Bleeping Computer
Threat Score
Researchers (Infoblox and Eclypsium) warn of 'Sitting Ducks' DNS attacks that exploit lame delegations and lax provider verification to hijack domains; attackers have abused this vector since 2018 to seize at least 35,000 domains (with over a million vulnerable daily) for spam, phishing, traffic distribution systems, and malware/C2 operations, and several criminal clusters (e.g., 'Vacant Viper') have repeatedly leveraged these hijacked domains.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
