Page 782 - (ISC)² CISSP Certified Information Systems Security Professional Official Study Guide
P. 782
policy for lapsed registrations.
When an organization loses their domain and someone else takes over
control, this can be a devastating event both to the organization and its
customers and visitors. The original website or online content will no
longer be available (or at least not available on the same domain
name). And the new owner might host completely different content or
host a false duplicate of the previous site. This later activity might
result in fooling visitors, similar to a phishing attack, where personally
identifiable information (PII) might be extracted and collected.
An example of a domain hijack is the theft of the Fox-IT.com domain
in September 2017; you can read about this attack at https://www.fox-
it.com/en/insights/blogs/blog/fox-hit-cyber-attack/.

