International Journal For Multidisciplinary Research
E-ISSN: 2582-2160
•
Impact Factor: 9.24
A Widely Indexed Open Access Peer Reviewed Multidisciplinary Bi-monthly Scholarly International Journal
Home
Research Paper
Submit Research Paper
Publication Guidelines
Publication Charges
Upload Documents
Track Status / Pay Fees / Download Publication Certi.
Editors & Reviewers
View All
Join as a Reviewer
Get Membership Certificate
Current Issue
Publication Archive
Conference
Publishing Conf. with IJFMR
Upcoming Conference(s) ↓
Conferences Published ↓
DePaul-2026
IC-AIRCM-T3-2026
SPHERE-2025
AIMAR-2025
SVGASCA-2025
ICCE-2025
Chinai-2023
PIPRDA-2023
ICMRS'23
Contact Us
Plagiarism is checked by the leading plagiarism checker
Call for Paper
Volume 8 Issue 3
May-June 2026
Indexing Partners
Silent Takeover: Exploiting IPv6 DNS Behavior in Windows 11 Networks
| Author(s) | Mr. Divyansh Bodhale, Mr. Deepesh Gautam, Mr. Ankit Bisen, Mr. Aditya Wadive, Prof. Leelkant Dewagan, Swati Tiwari |
|---|---|
| Country | India |
| Abstract | This research presents a comprehensive analysis of IPv6 DNS takeover vulnerabilities in Windows 11 enter- prise networks, demonstrating a critical security gap in default network configurations. Through systematic experimentation in controlled laboratory environments, we identified and exploited a fundamental weakness in how Windows systems handle DHCPv6 solicitations and DNS resolution, particularly when combined with the Web Proxy Auto-Discovery (WPAD) protocol. Our study reveals that 95% of Windows systems with default configurations are vulnerable to credential harvesting attacks through IPv6 DNS manipulation, with successful NTLMv2 hash capture occurring within 2-3 minutes of attack initiation. We developed dual- purpose automated tools: an offensive penetration testing utility achieving 90% evasion rate against standard security tools, and a comprehensive PowerShell-based defense mechanism providing real-time attack detection and automated hardening. The re- search demonstrates that despite Windows 11’s enhanced security features, the default enablement of IPv6 combined with automatic WPAD discovery creates an exploitable attack surface requiring immediate attention. Our findings indicate that organizations can achieve complete mitigation through strategic IPv6 configuration management, WPAD disablement, and implementation of our proposed monitoring framework. This work contributes both practical security tools and actionable recommendations for securing modern Windows networks against emerging IPv6- based threats. |
| Field | Computer > Network / Security |
| Published In | Volume 7, Issue 6, November-December 2025 |
| Published On | 2025-11-19 |
| DOI | https://doi.org/10.36948/ijfmr.2025.v07i06.58968 |
Share this

E-ISSN 2582-2160
CrossRef DOI is assigned to each research paper published in our journal.
IJFMR DOI prefix is
10.36948/ijfmr
Downloads
All research papers published on this website are licensed under Creative Commons Attribution-ShareAlike 4.0 International License, and all rights belong to their respective authors/researchers.
Powered by Sky Research Publication and Journals