Threat actors may acquire domains that can be used during targeting. Domain names are the human readable names used to represent one or more IP addresses. They can be purchased or, in some cases, acquired for free.
This type of attack technique cannot be easily mitigated with preventive controls since it is based on the abuse of system features.