Telecommunications Science ›› 2022, Vol. 38 ›› Issue (9): 1-17.doi: 10.11959/j.issn.1000-0801.2022248

• Review •     Next Articles

A survey on DNS attack detection and security protection

Jianwu ZHANG1, Yanjun AN1, Huangyan DENG2   

  1. 1 Hangzhou Dianzi University, Hangzhou 310018, China
    2 Zhejiang Uniview Technologies Co., Ltd., Hangzhou 310051, China
  • Revised:2022-08-25 Online:2022-09-20 Published:2022-09-01
  • Supported by:
    The National Natural Science Foundation of China(U1866209);The National Natural Science Foundation of China(61772162)

Abstract:

With the gradual evolution of the traditional Internet to “Internet+”, the domain name system (DNS) had been continuously expanding from basic address resolution to new models such as comprehensive perception and reliable transmission.Due to the diverse functions and the extensive coverage of DNS in the new scenario, it will cause serious consequences once attacked.Therefore, the research on DNS attack detection and security protection continues and attracts more and more attention.Firstly, several common DNS attacks were introduced, including DNS spoofing, DNS covert channel, DNS distributed denial of service (DDoS) attack, DNS reflection amplification attacks, and malicious DGA domain names.Subsequently, these DNS attack detection technologies were systematically analyzed and summarized from the machine learning perspective.Then, the DNS security protection technologies were sorted out in decentralization, authenticated encryption and limited resolution.Finally, some future research directions were proposed.

Key words: domain name system, DNS attack detection, security protection, machine learning

CLC Number: 

No Suggested Reading articles found!