China-Linked 'Muddling Meerkat' Hijacks DNS to Map Internet on Global Scale
ID: 73a151e4-0a86-55ef-a45d-6d29f9d14276
STIX ID: report--73a151e4-0a86-55ef-a45d-6d29f9d14276
Feed Name: The Hacker News
Threat Score
Infoblox identified a previously undocumented Chinese nation-state DNS operation dubbed "Muddling Meerkat" active since October 2019 that abuses the Great Firewall to inject false MX resource records via open resolvers worldwide. The actor generated anomalous MX queries for over 20 well-known domains, suggesting sophisticated DNS-based reconnaissance or internet-mapping activity, though the full motive and scope remain unclear.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
