‘Underminr’ Vulnerability Lets Attackers Hide Malicious Connections Behind Trusted Domains

‘Underminr’ Vulnerability Lets Attackers Hide Malicious Connections Behind Trusted Domains

Keypoints

  • Underminr is a variant of domain fronting that hides malicious connections.
  • Attackers abuse shared CDN infrastructure and tenant routing mismatches.
  • The technique can conceal C&C, VPN, and proxy traffic.
  • It can bypass Protective DNS and other egress filtering defenses.
  • ADAMnetworks says about 88 million domains may be affected.

Read More: https://www.securityweek.com/underminr-vulnerability-lets-attackers-hide-malicious-connections-behind-trusted-domains/