TsuKing: Coordinating DNS Resolvers and Queries into Potent DoS Amplifiers
In this paper, we present a new DNS amplification attack, named TsuKing. Instead of
exploiting individual DNS resolvers independently to achieve an amplification effect …
exploiting individual DNS resolvers independently to achieve an amplification effect …
{ResolverFuzz}: Automated Discovery of {DNS} Resolver Vulnerabilities with {Query-Response} Fuzzing
Domain Name System (DNS) is a critical component of the Internet. DNS resolvers, which
act as the cache between DNS clients and DNS nameservers, are the central piece of the …
act as the cache between DNS clients and DNS nameservers, are the central piece of the …
Rethinking the Security Threats of Stale {DNS} Glue Records
The Domain Name System (DNS) fundamentally relies on glue records to provide
authoritative nameserver IP addresses, enabling essential in-domain delegation. While …
authoritative nameserver IP addresses, enabling essential in-domain delegation. While …
Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers
Authoritative nameservers are delegated to provide the final resource record. Since the
security and robustness of DNS are critical to the general operation of the Internet, domain …
security and robustness of DNS are critical to the general operation of the Internet, domain …
Reachability Analysis of the Domain Name System
The high complexity of DNS poses unique challenges for ensuring its security and reliability.
Despite continuous advances in DNS testing, monitoring, and verification, protocol-level …
Despite continuous advances in DNS testing, monitoring, and verification, protocol-level …
[PDF][PDF] DNSBOMB: A New Practical-and-Powerful Pulsing DoS Attack Exploiting DNS Queries-and-Responses
DNS employs a variety of mechanisms to guarantee availability, protect security, and
enhance reliability. In this paper, however, we reveal that these inherent beneficial …
enhance reliability. In this paper, however, we reveal that these inherent beneficial …
POPS: From History to Mitigation of DNS Cache Poisoning Attacks
We present a novel yet simple and comprehensive DNS cache POisoning Prevention
System (POPS), designed to integrate as a module in Intrusion Prevention Systems (IPS) …
System (POPS), designed to integrate as a module in Intrusion Prevention Systems (IPS) …
Failed Yet Stored: A First Look at DNS Negative Caching
M Zeng, Y Zhu, B Li, Y Zhang, Q Liu… - 2024 IEEE International …, 2024 - ieeexplore.ieee.org
Caching is a critical method for enhancing the efficiency and the security of the Domain
Name System (DNS). Initially, only successful domain name resolution results were cached …
Name System (DNS). Initially, only successful domain name resolution results were cached …
Performance, privacy, and security issues of TCP/IP at the application layer: A comprehensive survey
T Murkomen - GSC Advanced Research and Reviews, 2024 - gsconlinepress.com
TCP/IP is the backbone of modern network communication, connecting devices across the
world. TCP/IP at its core is a suite of protocols that enables the transmission of data between …
world. TCP/IP at its core is a suite of protocols that enables the transmission of data between …
ODNS Clustering: Unveiling Client-side Dependency in Open DNS Infrastructure
W Wu, Z Wang, L Qinxin, Z Li, Y Li, J Yan… - THE WEB CONFERENCE … - openreview.net
There are over a million open DNS servers in the wild. However, not all servers perform
recursive queries directly. Instead, many DNS forwarders forward queries to upstream …
recursive queries directly. Instead, many DNS forwarders forward queries to upstream …