Domain Name Server (DNS) Hijacking also known as DNS Redirection is a type of cyber attack where attackers hijack users’ DNS requests to incorrectly resolve the IP address of the website, users attempted to load thereby redirecting them to phishing sites.
The attack involves compromising users’ system DNS (TCP/IP) settings to redirect it to a ‘Rogue DNS’ server thereby invalidating the default DNS settings. To perform the attack, attackers either install malware on users’ systems or take over routers by exploiting known vulnerabilities or hack DNS communication. As a result, users would become a victim of either pharming or phishing.
Types of DNS Hijacking attacks
How does DNS Hijacking attack work?
Your DNS server is owned and controlled by your ISP (Internet Service Provider) and your system’s DNS settings are usually assigned by your ISP.
Example of DNS Hijacking attack
How to prevent DNS Hijacking attack?
Publisher