0% found this document useful (0 votes)
4 views1 page

DNS Spoofing in Cyberattacks Explained

Uploaded by

Mangal
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
4 views1 page

DNS Spoofing in Cyberattacks Explained

Uploaded by

Mangal
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

Web-based attacks These are the attacks which occur on a website or web applications.

Some of the
important web-based attacks are as follows1. Injection attacks It is the attack in which some data will
be injected into a web application to manipulate the application and fetch the required information.
Example- SQL Injection, code Injection, log Injection, XML Injection etc. 2. DNS Spoofing DNS
Spoofing is a type of computer security hacking. Whereby a data is introduced into a DNS resolver's
cache causing the name server to return an incorrect IP address, diverting traffic to the attackers
computer or any other computer. The DNS spoofing attacks can go on for a long period of time
without being detected and can cause serious security issues. 3. Session Hijacking It is a security
attack on a user session over a protected network. Web applications create cookies to store the state
and user sessions. By stealing the cookies, an attacker can have access to all of the user data. 4.
Phishing Phishing is a type of attack which attempts to steal sensitive information like user login
credentials and credit card number. It occurs when an attacker is masquerading as a trustworthy
entity in electronic communication. 5. Brute force It is a type of attack which uses a trial and error
method. This attack generates a large number of guesses and validates them to obtain actual data
like user password and personal identification number. This attack may be used by criminals to crack
encrypted data, or by security, analysts to test an organization's network security.

You might also like