Dynamic DNS Abuse

Noun · Security & Infosec

Definitions

  1. The malicious use of dynamic DNS services to keep domain names pointed at changing IP addresses, often for phishing, malware command and control, or rapid infrastructure rotation. It helps attackers stay reachable while moving between hosts quickly.

    In plain English: Using dynamic DNS services to help malicious infrastructure keep moving.

    Example: "The phishing kit relied on dynamic DNS abuse so the same domain name kept following new cheap VPS nodes."

Related Terms