Domain name system security and privacy: A contemporary survey

Aminollah Khormali, Jeman Park, Hisham Alasmary, Afsah Anwar, Muhammad Saad, David Mohaisen

Research output: Contribution to journalShort surveypeer-review

30 Citations (Scopus)

Abstract

The Domain Name System (DNS) is one of the most important components of today's Internet, and is the standard naming convention between human-readable domain names and machine-routable Internet Protocol (IP) addresses of Internet resources. However, due to the vulnerability of DNS to various threats, its security and functionality have been continuously challenged over the course of time. Although, researchers have addressed various aspects of the DNS in the literature, there are still many challenges yet to be addressed. In order to comprehensively understand the root causes of the vulnerabilities of DNS, it is mandatory to review the various activities in the research community on DNS landscape. To this end, this paper surveys more than 170 peer reviewed papers, which are published in both top conferences and journals in last ten years, and summarizes vulnerabilities in DNS and corresponding countermeasures. This paper not only focuses on the DNS threat landscape and existing challenges, but also discusses the utilized data analysis methods, which are frequently used to address DNS threat vulnerabilities. Furthermore, we looked into the DNS threat landscape from the view point of the involved entities in the DNS infrastructure in an attempt to point out more vulnerable entities in the system.

Original languageEnglish
Article number107699
JournalComputer Networks
Volume185
DOIs
Publication statusPublished - 11 Feb 2021

Bibliographical note

Publisher Copyright:
© 2020

Fingerprint

Dive into the research topics of 'Domain name system security and privacy: A contemporary survey'. Together they form a unique fingerprint.

Cite this