The Forgotten Side of DNS: Orphan and Abandoned Records

2020 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW)(2020)

引用 1|浏览37
暂无评分
摘要
DNS zone administration is a complex task involving manual work and several entities and can therefore result in misconfigurations. Orphan records are one of these misconfigurations, in which a glue record for a delegation that does not exist anymore is forgotten in the zone file. Orphan records are a security hazard to third-party domains that have these records in their delegation, as an attacker may easily hijack such domains by registering the domain associated with the orphan. The goal of this paper is to quantify this misconfiguration, extending previous work by Kalafut et al., by identifying a new type of glue record misconfiguration - which we refer to as abandoned records - and by performing a broader characterization. Our results highlight how the situation has changed, not always for the better, compared to a decade-old study.
更多
查看译文
关键词
DNS,orphan records,abandoned records,misconfiguration
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要