Copyright (c) 2026 MindMesh Academy. All rights reserved. This content is proprietary and may not be reproduced or distributed without permission.

5.2.2. DNS and Rogue Device Attacks

DNS Attacks:
  • DNS poisoning: Inject false records into cache
  • DNS spoofing: Respond with false answers

Defense: DNSSEC, DoH, DoT

Rogue Devices:
  • Rogue DHCP: Unauthorized server assigns bad configurations
  • Rogue AP: Unauthorized wireless access point

Defense: DHCP snooping, wireless intrusion detection

Evil Twin: Malicious AP mimicking legitimate network SSID. Victims connect to attacker's network.

On-path Attack (Man-in-the-Middle): Attacker intercepts communication between parties, potentially reading or modifying traffic.

Alvin Varughese
Written byAlvin Varughese
Founder15 professional certifications