Motivation for Behaviour-Based DNS Security: A Taxonomy of DNS-Related Internet Threats.

SECUREWARE '07: Proceedings of the The International Conference on Emerging Security Information, Systems, and Technologies(2007)

引用 9|浏览5
暂无评分
摘要
The Domain Name System is the largest distributed system in operation today and a critical infrastructure component that can be regarded as one nervous system of the current Internet. Because of its critical role DNS is involved in manifold Internet attacks both against the system itself or other Internet hosts. This paper presents an exhaustive analysis of Internet threats involving the DNS classifying them in three categories: name server vulnerabilities, authenticity and integrity attacks, and consumption attacks. Attacks consuming Internet infrastructure resources are inadequately addressed today and from a network operator perspective they remain the major operational security issue. We show that many consumption attacks cause anomalies in DNS traffic, which implies that behaviour-based security on the name servers is a promising research area against this class of Internet attacks.
更多
查看译文
关键词
Internet,security of data,Domain Name System security,Internet threat,authenticity,consumption attack,distributed system,integrity attack,name server vulnerability,
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要