Dynamic DNS can be abused by attackers to provide what capability for command-and-control (C2) communications?

Prepare for the Security Operations Exam with targeted practice questions. Enhance your understanding with detailed explanations and tips to successfully pass your exam!

Multiple Choice

Dynamic DNS can be abused by attackers to provide what capability for command-and-control (C2) communications?

Explanation:
Dynamic DNS lets a domain name stay reachable even as the underlying IP changes, which attackers can exploit to maintain resilient command-and-control communications. By using a dynamic DNS service, the C2 server can frequently rotate its hosting IP while the domain name remains constant, or the domain can be updated to point to the new IP quickly. This makes it harder for defenders to block the C2 link with static IP blocks or simple domain blacklists, enabling continuous control over compromised machines even after IP-based takedowns or outages. The other options don’t capture this capability. Dynamic DNS isn’t about slowing DNS resolution, it doesn’t guarantee domain ownership, and it isn’t about blocking malware.

Dynamic DNS lets a domain name stay reachable even as the underlying IP changes, which attackers can exploit to maintain resilient command-and-control communications. By using a dynamic DNS service, the C2 server can frequently rotate its hosting IP while the domain name remains constant, or the domain can be updated to point to the new IP quickly. This makes it harder for defenders to block the C2 link with static IP blocks or simple domain blacklists, enabling continuous control over compromised machines even after IP-based takedowns or outages.

The other options don’t capture this capability. Dynamic DNS isn’t about slowing DNS resolution, it doesn’t guarantee domain ownership, and it isn’t about blocking malware.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy