A forensic examiner captures traffic and notices repeated DNS queries for randomly generated domain names (e.g., xkj29mq.evil.com). This pattern is most indicative of which technique?
-
A
DNSSEC validation failures
-
B
Domain Generation Algorithm (DGA) used by malware for C2
-
C
Legitimate CDN load balancing
-
D
IPv6 transition mechanism