312-50V12 · Question #95
John, a professional hacker, decided to use DNS to perform data exfiltration on a target network. In this process, he embedded malicious data into the DNS protocol packets that even DNSSEC cannot…
The correct answer is D. DNS tunneling method. DNS tunneling is a technique used to bypass network security controls by encapsulating non- DNS traffic within DNS packets. By embedding malicious data into the DNS protocol packets, an attacker can bypass firewalls and other security controls that are not configured to inspect…
Question
Options
- ADNSSEC zone walking
- BDNS cache snooping
- CDNS enumeration
- DDNS tunneling method
How the community answered
(28 responses)- A4% (1)
- B11% (3)
- C4% (1)
- D82% (23)
Explanation
DNS tunneling is a technique used to bypass network security controls by encapsulating non- DNS traffic within DNS packets. By embedding malicious data into the DNS protocol packets, an attacker can bypass firewalls and other security controls that are not configured to inspect DNS traffic. DNSSEC zone walking is a technique used to extract information from DNSSEC-signed zones by iterating over the DNS tree. DNS cache snooping is a technique used to obtain information about a DNS server's cache by sending queries for non-existent domain names. DNS enumeration is a technique used to gather information about a target network by querying DNS servers for information about the network's hosts and services.
Topics
Community Discussion
No community discussion yet for this question.