DNS attacks involve malicious actors commandeering legitimate domain names to create fake sites and attack DNS servers, facilitated by AI technology. Common types include DoS and DDoS attacks, DNS amplification attacks, DNS tunneling, DNS hijacking, DNS spoofing, and Fast flux. Mitigation strategies include DNS encryption, DNS traffic inspection, DNS access control lists, DNS filtering, vulnerability scanning, rate limiting, network traffic monitoring, restricting traffic to specific servers, and continuous auditing.

LummaStealer Exploits Windows Utility to Run Remote Code Disguised as .mp4 File
The Cybereason Global Security Operations Center (GSOC) has reported on the LummaStealer malware’s advanced evasion techniques. The Russian-developed malware uses the Microsoft HTML Application Host