Securing DNS for Windows (Part 1)
DNS is a rather simple service, but protecting it can make or break your entire network infrastructure. Even though DNS is a simple database of names and numbers, an attacker can take full advantage of the information that they can glean from compromising the database. Some attacks can be to gather information from your database, only to use that information against you as they build a structure of what your network looks like. Other attacks will put information into your database, in an attempt to have your DNS servers perform name resolutions that they would normally not perform. Regardless of the attack on your DNS infrastructure, you need to take precautions to thwart off these attacks before it is too late.
Entire Article: Windows Security


