SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsEvery day 200,000 domains expire ("DomCop FAQ," n.d.), become available for purchase and possible exploitation by the new owner. These expired domains pose a risk to companies and individuals, leading to compromised accounts and resources that remain associated with those domains. Expired domains can be purchased, and services re-established to capture all data previously directed to the domain allowing for Domain Dumpster Diving. Five expired domains were selected and monitored for six weeks. The resultant data confirms that the data captured could be used to access accounts and resources related to the domain's previous owner. This research focuses on selecting candidate domains, an overview of data collected, and recommendations for defensive strategies for Domain Dumpster Diving.