Dark Mode

Settings

Capec-585 Detail

DNS Domain Seizure

Detailed Social Engineering

Parents: 582

Threats: T63 T103 T264 T267 T269 T289 T308 T311

Description

In this attack pattern, an adversary influences a target's web-hosting company to disable a target domain. The goal is to prevent access to the targeted service provided by that domain. It usually occurs as the result of civil or criminal legal interventions.

Not present

External ID Source Link Description
CAPEC-585 capec https://capec.mitre.org/data/definitions/585.html
REF-467 reference_from_CAPEC https://www.fbi.gov/contact-us/field-offices/newyork/news/press-releases/dozens-of-online-dark-markets-seized-pursuant-to-forfeiture-complaint-filed-in-manhattan-federal-court-in-conjunction-with-the-arrest-of-the-operator-of-silk-road-2.0 Dozens of Online 'Dark Markets' Seized Pursuant to Forfeiture Complaint Filed in Manhattan Federal Court in Conjunction with the Arrest of the Operator of Silk Road 2.0, 2014, FBI

Not present

  1. This attack pattern requires that the adversary has cooperation from the registrar of the target domain.

Not present

Not present

Availability
Other (Disabling a target domain at the infrastructure level denies the availability of its service to the user.)
  1. The FBI's seizure of gambling websites, the US DOJ's seizure of child pornography websites, and Microsoft's seizure of all domains owned by the company No-IP in order to disrupt a cyberattack originating from a subset of those domains.