Wiz research team announced a new class of vulnerabilities on BlackHat & Defcon (for more information go to our blog). Check if your organization is leaking Dynamic DNS updates to DNS providers or malicious actors. To use the checker, input your top level domain or a sample FQDN of your endpoints
For any question please contact us at dynamic-dns-leak@wiz.io or join our slack group, we are happy to help.
Our checker first checks to see if the SOA record is properly configured.
Event | Reason |
---|
If the SOA record is misconfigured, our checker continues the assessment by simulating the Microsoft algorithm behavior and querying the SOA server for its own name. The checker tries to estimate your risk of exposure to the vulnerability.
Event |
---|