An analyst receives an alert for a high volume of DNS queries to a single external domain from one internal host. What is the MOST likely threat to investigate first?
-
A
DNS amplification attack
-
B
DNS tunneling for data exfiltration
-
C
BGP route hijacking
-
D
ARP spoofing