What is DNS?
DNS (Domain Name System) translates domain names into IP addresses.
Common security issues
Zone transfers allowed.
Cache poisoning.
Misconfigured records.
Subdomain takeover.
Default ports
53 (TCP/UDP)
Enumeration
DNS records, zone transfers, subdomains, and misconfig probing guides
DNS Record Enumeration
DNS Server Version Fingerprinting
DNS Zone Transfer (AXFR)
Reverse DNS Lookup Sweeps
Perform reverse DNS lookup sweeps to map IP ranges to hostnames, uncover hidden infrastructure, and identify targets during network enumeration.
Subdomain Brute Forcing
Systematically discover hidden subdomains by automating DNS queries against wordlists, revealing exposed infrastructure and expanding attack surface visibility.
Exploitation
DNS exploitation guides covering poisoning, takeover, and hijacking
ADIDNS Poisoning and Hijacking
Exploit Active Directory DNS zones by injecting wildcard records and hijacking ADIDNS to redirect traffic or capture credentials in AD environments.
DNS Cache Poisoning and Spoofing
DNS Rebinding – Bypass SOP to Reach Internal Services
Insecure DNS Dynamic Updates (RFC 2136)
Subdomain Takeover Exploitation
TSIG Key Abuse – Authenticated DNS Zone Manipulation
Data Exfiltration
Exfiltrate data via DNS queries using dnscat2, iodine, and manual methods