The DNS service is a very low maintenance. The downside of such ease of use means that the DNS server is often forgotten by the admins, and DNS security can be lacking.

The easiest attack that can be performed on a DNS server is a Zone Transfer.

Not implementing Zone Transfer means that there can be
  1. Data Exposure
  2. Denial of service

