Sponsor of the Day:
Jerkmate
https://embracethered.com/blog/posts/2025/amazon-q-developer-data-exfil-via-dns/
Amazon Q Developer: Secrets Leaked via DNS and Prompt Injection · Embrace The Red
Amazon Q Developer Can Leak Secrets To External Systems Without Developer Consent
amazon q developersecrets leakedvia dnsprompt injectionembrace
https://www.crowdstrike.com/en-us/blog/detecting-kerberos-relay-attack-via-dns-cname-abuse/
Detecting CVE-2026-20929: Kerberos Relay Attack via DNS CNAME Abuse
Mar 31, 2026 - Learn how to detect CVE-2026-20929, a Kerberos relay vulnerability using DNS CNAME abuse, with CrowdStrike Falcon to identify AD CS certificate-based attacks.
cve 2026attack viadetectingkerberosrelay
https://www.rfc-editor.org/rfc/rfc3832.html
RFC 3832: Remote Service Discovery in the Service Location Protocol (SLP) via DNS SRV
remote servicevia dnsrfc3832discovery
https://www.ispmanager.com/knowledge-base/failed-to-issue-a-lets-encrypt-certificate-when-verified-via-dns
Failed to issue a Let's Encrypt certificate when verified via DNS
Failed to issue a Let's Encrypt certificate when verified via DNS
encrypt certificatevia dnsfailedissuelet
https://www.addictivetips.com/ubuntu-linux-tips/block-ads-via-dns-on-linux/
How to block ads via DNS on Linux
Feb 17, 2020 - It has long been possible to block advertisements in Firefox on Linux, as well as other web browsers. However, blocking ads directly in the web browser leaves
block adsvia dnslinux
https://securityonline.info/coredns-dos-flaw-unauthenticated-attackers-can-crash-servers-via-dns-over-quic/
CoreDNS DoS Flaw: Unauthenticated Attackers Can Crash Servers via DNS-over-QUIC
A DoS flaw in CoreDNS (CVE-2025-47950) allows unauthenticated attackers to crash servers using DNS-over-QUIC. Update to 1.12.2 immediately or disable QUIC.
servers viacorednsdosflawunauthenticated
https://detection.fyi/sigmahq/sigma/windows/process_creation/proc_creation_win_dnscmd_install_new_server_level_plugin_dll/
New DNS ServerLevelPluginDll Installed Via Dnscmd.EXE | Detection.FYI
Detects the installation of a DNS plugin DLL via ServerLevelPluginDll parameter in registry, which can be used to execute code in context of the DNS server …
exe detection fyinew dnsinstalledvia
https://www.first.org/global/sigs/dns/stakeholder-advice/detection/infiltration-and-exfiltration-via-the-dns
DNS Abuse Detection: Infiltration and exfiltration via the DNS
dns abuse detectionexfiltration viainfiltration
https://datatracker.ietf.org/doc/html/rfc9460
RFC 9460 - Service Binding and Parameter Specification via the DNS (SVCB and HTTPS Resource Records)
Service Binding and Parameter Specification via the DNS (SVCB and HTTPS Resource Records) (RFC 9460, )
service bindingresource recordsrfc9460parameter
https://www.dns-aid.org/
DNS-AID — AI Agent Discovery via DNS
ai agentdiscovery viadnsaid
https://www.theregister.com/2017/06/29/systemd_pwned_by_dns_query/
Don't panic, but Linux's Systemd can be pwned via an evil DNS query • The Register
Jun 29, 2017 - PS, Alpine users, you need to get patching, too – for other reasons
dns querypaniclinuxsystemdpwned
https://developers.cloudflare.com/ddos-protection/advanced-ddos-systems/api/dns-protection/
Configure Advanced DNS Protection via API · Cloudflare DDoS Protection docs
Use the Cloudflare API to configure Advanced DNS Protection via API.
advanced dnsprotection viacloudflare ddosconfigureapi
https://tilda.cc/en/answers/a/dns-records/
How to add DNS records if the domain is managed via Tilda DNS? - Frequently asked questions Tilda
In case your domain is managed through Tilda DNS, you need to go to your DNS control panel to create new DNS-records.You may do this via the “Domains” tab in...
tilda frequently askeddns recordsadddomainmanaged
https://android-mt.ouest-france.fr/tutoriel/contourner-le-filtrage-wi-fi-des-reseaux-publics-via-un-dns-securise/198589/
Contourner le filtrage Wi-Fi des réseaux publics via un DNS sécurisé | Android MT
Apr 4, 2026 - Découvrez comment configurer un DNS sécurisé nativement sur vos appareils pour contourner la censure des réseaux Wi-Fi publics et protéger vos données.
wi fivia unandroid mtcontournerle
https://www.spamhaus.com/resource-center/response-policy-zones-rp-zs-via-spamhaus-dns-firewall/
Blog | Response Policy Zones (RPZs) via Spamhaus DNS Firewall | Spamhaus Technology
response policy zonesdns firewallblogviaspamhaus
https://datatracker.ietf.org/doc/html/rfc7672
RFC 7672 - SMTP Security via Opportunistic DNS-Based Authentication of Named Entities (DANE)...
SMTP Security via Opportunistic DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) (RFC 7672, )
dns basednamed entitiesrfc7672smtp