DNS Poisoning
IntermediatePoison a DNS cache to redirect victims to a malicious server, capture their credentials, then learn how DNSSEC prevents this attack.
Progress:
1
Intercept DNS Query2
Harvest Credentials3
Defend with DNSSECDNS Resolver — Cache
google.com142.250.80.46SIGNED
bank.example.com93.184.216.34SIGNED
api.stripe.com52.4.141.29SIGNED
DNS Query in Progress
$ dig bank.example.com
;; QUESTION SECTION:
;bank.example.com. IN A
;; ANSWER SECTION (pending...):
bank.example.com. 86400 IN A 93.184.216.34
Race the legitimate response with your forged answer...
;; QUESTION SECTION:
;bank.example.com. IN A
;; ANSWER SECTION (pending...):
bank.example.com. 86400 IN A 93.184.216.34
Race the legitimate response with your forged answer...