Forum Discussion

Depthcharge_343's avatar
Depthcharge_343
Icon for Nimbostratus rankNimbostratus
Apr 21, 2019

Sea Turtle DNS Hijack

Hi All,

 

Does GTM has any impact on the Sea Turtle DNS Hijack?

 

Does is have a mechanism to alert any modification or change in the record?

 

Regards, Gokul

 

1 Reply

  • in which way are you using the BIG-IP DNS (former GTM) when asking this question?

     

    if it is a DNS resolver for your clients then you don't want to be informed of every IP change on every DNS record, because that just happens when a website changes hosting provider or with DNS load balancing or ...

     

    if it is a DNS server, then you should just use strong passwords and make sure admin access is tightly restricted. those attackers did nothing special, just gain admin access to DNS servers to change records.

     

    and look into implementing DNSSEC.