What is DNS spoofing?
DNS spoofing is the manipulation of the DNS resolver cache by inputting corrupted DNS data. This causes the DNS server to send the user the wrong IP, redirecting the victim to the attacker's fake domain. When launching evil twin attacks, attackers will often use DNS spoofing to redirect the victim to a cloned landing page or website. This leads to setting up the victim for a MITM attack. DNS cache poisoning is a popular method hackers use to spoof DNS quickly and efficiently. Most users on the same wireless network will usually share the same DNS cache provided by the ISP DNS server. When users are logged on the evil twin, a hacker can easily inject a spoofed DNS record into the DNS cache changing the DNS record for ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access