In Depth Analysis of Multicast DNS and DNS Service Discovery
Offered By: Hack In The Box Security Conference via YouTube
Course Description
Overview
Syllabus
Intro
Objectives
Threat Analysis Methodology
Introduction
In a nutshell...
mDNS: A few more details...
and a few words for DNS-SD
What's the Inherent Problem(s)
Related Work
Types of Attacks
Discovery of available services
A Special Service
Discovering Instances of a Specific Service • Query for a DNS PTR record with a name of
Information Gathering
How Pholus Automates Reconnaissance
Advertised DNS Reverse Mapping
Implicit Network Sweeping
Spoofing Services Manually
Spoofing TXT ans SRV Records
Send Automatically Fake Responses
An Asymmetric Key Verification Example
Spoofing-Related Options
and What About TXT Records?
How to Reproduce Overflow Attempts
Is there Room for DNS Cache Poisoning?
Denial of Service Setting DNS TTL:=0
Setting DNS TTL=0 Using Pholus
Probing
Denial of Service + Net Flooding Creating Conflicts deliberately
Other Dos Capabilities
Generic Flooding of a Network
Direct Unicast Queries
DDoS (Amplification) Attack
Situation Nowadays
Sometimes Problems re-appear...
How to Reproduce the Attacks Using Pholus?
Mitigation?
Permanent Fix?
Conclusions
References
Questions?
Taught by
Hack In The Box Security Conference
Related Courses
Introduction To Ethical HackingCodecademy Unlocking Information Security II: An Internet Perspective
Tel Aviv University via edX An Introduction to Ethical Hacking with Kali Linux
Packt via Coursera Ciberseguridad. Bases y estructuras para la protección de la información
Universidad Anáhuac via edX CVE Series: Spring4Shell (CVE-2022-22965)
Cybrary