Criminals have been hijacking subdomains of major organizations like Bose, Panasonic, and CDC to spread malware and conduct online scams.
Security experts have identified a threat group called Hazy Hawk utilizing misconfigured DNS records to redirect visitors to malicious sites.
Hazy Hawk exploits abandoned cloud resources with dangling DNS records to control legitimate-looking subdomains for spreading malware.
To stay safe, individuals should be cautious of push notifications from unfamiliar sites, while organizations must prioritize DNS hygiene and use automated monitoring tools for threat detection.