• Tutorials
  • Courses
  • Tracks

Which combination best represents passive DNS enumeration techniques (no direct queries to target authoritative servers)?

Last Updated :
Discuss
Comments

Which combination best represents passive DNS enumeration techniques (no direct queries to target authoritative servers)?

Certificate Transparency logs + public WHOIS + passive DNS databases

AXFR + zone transfer testing

TCP SYN scan + banner grabbing

Direct dig queries to authoritative NS records + brute-force subdomains

Share your thoughts in the comments