Abstract
Open DNS resolvers are resolvers that perform recursive resolution on behalf of any user. They can be exploited by adversaries because they are open to the public and require no authorization to use. Therefore, it is important to understand the state of open resolvers to gauge their potentially negative impact on the security and stability of the Internet. In this study, we conducted a comprehensive probing over the entire IPv4 address space and found that more than 3 million open resolvers still exist in the wild. Moreover, we found that many of them work in a way that deviates from the standard. More importantly, we found that many open resolvers answer queries with the incorrect, even malicious, responses. Contrasting to results obtained in 2013, we found that while the number of open resolvers has decreased significantly, the number of resolvers providing incorrect responses is almost the same, while the number of open resolvers providing malicious responses has increased, highlighting the prevalence of their threat.
Original language | English |
---|---|
Title of host publication | Proceedings - 49th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2019 |
Publisher | Institute of Electrical and Electronics Engineers Inc. |
Pages | 493-504 |
Number of pages | 12 |
ISBN (Electronic) | 9781728100562 |
DOIs | |
Publication status | Published - Jun 2019 |
Event | 49th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2019 - Portland, United States Duration: 24 Jun 2019 → 27 Jun 2019 |
Publication series
Name | Proceedings - 49th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2019 |
---|
Conference
Conference | 49th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2019 |
---|---|
Country/Territory | United States |
City | Portland |
Period | 24/06/19 → 27/06/19 |
Bibliographical note
Publisher Copyright:© 2019 IEEE.
Keywords
- DNS
- behavioral analysis
- measurement
- open resolver