What is the name of the attack where an attacker compromises a DNS server and changes its mapping to redirect requests to a rogue DNS server?

Prepare for the Certified Ethical Hacker Version 11 Exam. Study with comprehensive questions and explanations. Equip yourself with the skills needed for success!

Multiple Choice

What is the name of the attack where an attacker compromises a DNS server and changes its mapping to redirect requests to a rogue DNS server?

Explanation:
DNS server hijacking is when an attacker gains control of a DNS server and changes its mappings so that domain requests are resolved to IP addresses under the attacker’s control, effectively redirecting users to a rogue DNS server. This involves altering the server’s authoritative data, not just fooling a single resolver or flooding a target. This differs from DNS amplification, which is a DDoS technique that uses open resolvers to overwhelm a victim; DNS cache poisoning targets corrupting a resolver’s cache rather than the server’s authoritative records; and DNS spoofing typically refers to forging responses to mislead a resolver or client without necessarily compromising the DNS server itself.

DNS server hijacking is when an attacker gains control of a DNS server and changes its mappings so that domain requests are resolved to IP addresses under the attacker’s control, effectively redirecting users to a rogue DNS server. This involves altering the server’s authoritative data, not just fooling a single resolver or flooding a target.

This differs from DNS amplification, which is a DDoS technique that uses open resolvers to overwhelm a victim; DNS cache poisoning targets corrupting a resolver’s cache rather than the server’s authoritative records; and DNS spoofing typically refers to forging responses to mislead a resolver or client without necessarily compromising the DNS server itself.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy