DNS Analyzer: A New Burp Suite Extension to Find DNS Flaws in Web Apps
DNS flaws are very common on web applications where the DNS resolvers are vulnerable to Kaminsky attacks.
If threat actors are able to predict portions of a DNS query and the source ports, they...
Top 11 Best DNS Filtering Solutions – 2023
Before you know about DNS Filtering Solutions, you need to understand that it is a concept that comes in the first place.
In this digital world, cybersecurity is essential, and this is a big...
BIND DNS Software High-Severity Flaws Let Hackers Remotely Trigger DoS Attack
The Internet Systems Consortium (ISC) released security advisories on January 25, 2023, to address flaws in the DNS software suite BIND. A denial of service could occur if these vulnerabilities are exploited.
The flaws that...
Roaming Mantis Uses Android Malware To Hijacks DNS by Exploiting Wi-Fi Routers
Roaming Mantis is a cyberattack campaign that has been active for an extended period of time. The attackers behind this campaign use malicious APK files, which are the files used to install apps on...
Top 10 Dangerous DNS Attacks Types and The Prevention Measures – 2023
From the above topic, we can guess that today, we are going to discuss the top 10 DNS attacks and how to mitigate them.
DNS stands for Domain Name System which remains under constant...
New DNS Bug Let Hackers Spy Valuable Dynamic DNS Data From Millions of Endpoints
Recently a very new set of vulnerabilities has been detected by cybersecurity researchers, and according to their report, this vulnerability is continuously affecting the major DNS-as-a-Service (DNSaaS) providers.
This vulnerability is quite critical and it...
New TsuNAME DNS Let Attackers DNS Servers with Malicious Queries
Researchers identified a DNS vulnerability called “TsuNAME”. This vulnerability affects DNS resolvers and can be exploited to attack authoritative servers.
The authoritative DNS servers translate web domains to IP addresses and pass this information to...
100 Million+ Devices Affected With Critical WRECK DNS Implementation Flaws
JSOF team together with Forescout Research Labs, have revealed a set of nine vulnerabilities related to Domain Name System (DNS) implementations, causing either Denial of Service (DoS) or Remote Code Execution (RCE).
This vulnerability set,...
New Malicious NPM Packages Attack Amazon & Slack
Recently, the cybersecurity researchers at Sonatype have detected a very new type of "dependency confusion" packages that have been assigned to the NPM ecosystem that are malicious in nature.
npm is a open source package...
DNSpooq Vulnerability In DNS software Let Attackers hijack Millions of Network Devices
Recently, cybersecurity experts have detected nearly 7 vulnerabilities in a very popular DNS software set that has been executed in routers and access points in every kind of business.
We all know that Dnsmasq is...