NSA warns “fast flux” threatens national security. What is fast flux anyway?
1 min read
Summary
The National Security Agency (NSA) in the US has said that cyber criminals are using a technique known as fast flux to hide their operations, which allows them to evade detection.
Fast flux involves cyber groups cycling through a range of IP addresses and domain names, which makes it difficult to isolate the true origin of the infrastructure.
The NSA has warned that this is a significant threat to national security, as it means that malicious actors can hide their operations easily.
The technique also involves the use of wildcard DNS records, which can direct DNS lookups to non-existent subdomains, thereby falsely assigning IP addresses to these subdomains.
The NSA has urged network defenders to work together in order to detect and respond to fast flux tactics, and to develop detection strategies to counter this growing threat.