Off The Record - Weaponizing DHCP DNS Dynamic Updates
...As every sysadmin knows - DNS is hard. It is a complex ecosystem with many moving pieces. One such “piece“ is a seemingly harmless feature in the DHCP protocol called “DHCP DNS Dynamic Update“, which allows a DHCP server to register DNS records on behalf of its clients. This feature is also present and enabled by default in the Microsoft DHCP server, one of the most common DHCP servers in the market.
In this session, we will explore this feature and show the attack surface it exposes in Microsoft environments - we will detail a novel attack tactic that could allow unauthenticated attackers to spoof arbitrary DNS records in Active Directory DNS zones, and show how this could be abused to intercept authentication and achieve remote code execution. We will examine the different security settings that should prevent these attacks, and show how they fail to do so in some cases....
By: Ori David
Full Abstract and Presentation Materials:
#off-the-record---weaponizing-dhcp-dns-dynamic-updates-35439
1 view
0
0
20 hours ago 00:00:16 1
The Offspring – Tour 2025 Poster shirt
2 days ago 00:10:47 1
How Ukraine FPV drones Truck Attack Happened? #ukraine #russia #Spiderweb
3 days ago 00:04:16 33
Ane Brun - Trust
5 days ago 01:48:24 2
Catherine Fitts: Power Grids, Bankers vs. the West, Secret Underground Bases, and Extinction Events
7 days ago 00:06:12 1
BUỔI KICK OFF LUMIERE MIDTOWN QUY TỤ HƠN 5000 SALES TẠI THE GLOBAL CITY