Forward to Hell? On the Potentials of Misusing Transparent DNS Forwarders in Reflective Amplification Attacks
Fuente:
arXiv
Saved in:
| Main Authors: | Koch, Maynard, Dolzmann, Florian, Schmidt, Thomas C., Wählisch, Matthias |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
SoK: A Data-driven View on Methods to Detect Reflective Amplification DDoS Attacks Using Honeypots
by: Nawrocki, Marcin, et al.
Published: (2023)
by: Nawrocki, Marcin, et al.
Published: (2023)
A Survey on DNS Encryption: Current Development, Malware Misuse, and Inference Techniques
by: Lyu, Minzhao, et al.
Published: (2022)
by: Lyu, Minzhao, et al.
Published: (2022)
How to Measure TLS, X.509 Certificates, and Web PKI: A Tutorial and Brief Survey
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
A Call to Reconsider Certification Authority Authorization (CAA)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
Do CAA, CT, and DANE Interlink in Certificate Deployments? A Web PKI Measurement Study
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
POPS: From History to Mitigation of DNS Cache Poisoning Attacks
by: Afek, Yehuda, et al.
Published: (2025)
by: Afek, Yehuda, et al.
Published: (2025)
From the Beginning: Key Transitions in the First 15 Years of DNSSEC
by: Osterweil, Eric, et al.
Published: (2021)
by: Osterweil, Eric, et al.
Published: (2021)
A Survey and Evaluation Framework for Secure DNS Resolution
by: Jahromi, Ali Sadeghi, et al.
Published: (2025)
by: Jahromi, Ali Sadeghi, et al.
Published: (2025)
Is Protective DNS Blocking the Wild West?
by: Plonka, David, et al.
Published: (2025)
by: Plonka, David, et al.
Published: (2025)
Survey and Analysis of DNS Filtering Components
by: Magnusson, Jonathan
Published: (2024)
by: Magnusson, Jonathan
Published: (2024)
Transparent Attested DNS for Confidential Computing Services
by: Delignat-Lavaud, Antoine, et al.
Published: (2025)
by: Delignat-Lavaud, Antoine, et al.
Published: (2025)
Collusion Resistant DNS With Private Information Retrieval
by: Xiao, Yunming, et al.
Published: (2025)
by: Xiao, Yunming, et al.
Published: (2025)
Implementing and Evaluating Post-Quantum DNSSEC in CoreDNS
by: Suela, Julio Gento, et al.
Published: (2025)
by: Suela, Julio Gento, et al.
Published: (2025)
Domainator: Detecting and Identifying DNS-Tunneling Malware Using Metadata Sequences
by: Petrov, Denis, et al.
Published: (2025)
by: Petrov, Denis, et al.
Published: (2025)
Analyzing Enterprise DNS Traffic to Classify Assets and Track Cyber-Health
by: Lyu, Minzhao, et al.
Published: (2022)
by: Lyu, Minzhao, et al.
Published: (2022)
Mutualized oblivious DNS ($μ$ODNS): Hiding a tree in the wild forest
by: Kurihara, Jun, et al.
Published: (2021)
by: Kurihara, Jun, et al.
Published: (2021)
Guardians of DNS Integrity: A Remote Method for Identifying DNSSEC Validators Across the Internet
by: Nosyk, Yevheniya, et al.
Published: (2024)
by: Nosyk, Yevheniya, et al.
Published: (2024)
Don't Get Hijacked: Prevalence, Mitigation, and Impact of Non-Secure DNS Dynamic Updates
by: Nosyk, Yevheniya, et al.
Published: (2024)
by: Nosyk, Yevheniya, et al.
Published: (2024)
Improving the Identification of Real-world Malware's DNS Covert Channels Using Locality Sensitive Hashing
by: Ruffing, Pascal, et al.
Published: (2025)
by: Ruffing, Pascal, et al.
Published: (2025)
DNS Query Forgery: A Client-Side Defense Against Mobile App Traffic Profiling
by: Jimenez-Berenguel, Andrea, et al.
Published: (2025)
by: Jimenez-Berenguel, Andrea, et al.
Published: (2025)
Analysis of DNS Dependencies and their Security Implications in Australia: A Comparative Study of General and Indigenous Populations
by: Nazemi, Niousha, et al.
Published: (2024)
by: Nazemi, Niousha, et al.
Published: (2024)
Analysis of Robust and Secure DNS Protocols for IoT Devices
by: Aydeger, Abdullah, et al.
Published: (2025)
by: Aydeger, Abdullah, et al.
Published: (2025)
Progressive Pruning: Analyzing the Impact of Intersection Attacks
by: Döpmann, Christoph, et al.
Published: (2024)
by: Döpmann, Christoph, et al.
Published: (2024)
On Cross-Layer Interactions of QUIC, Encrypted DNS and HTTP/3: Design, Evaluation and Dataset
by: Sengupta, Jayasree, et al.
Published: (2023)
by: Sengupta, Jayasree, et al.
Published: (2023)
DNS Tunneling: Threat Landscape and Improved Detection Solutions
by: Amirov, Novruz, et al.
Published: (2025)
by: Amirov, Novruz, et al.
Published: (2025)
Building Automotive Security on Internet Standards: An Integration of DNSSEC, DANE, and DANCE to Authenticate and Authorize In-Car Services
by: Salomon, Timo, et al.
Published: (2025)
by: Salomon, Timo, et al.
Published: (2025)
A Scan-Based Analysis of Internet-Exposed IoT Devices Using Shodan Data
by: Williams, Richelle, et al.
Published: (2026)
by: Williams, Richelle, et al.
Published: (2026)
Learning the APT Kill Chain: Temporal Reasoning over Provenance Data for Attack Stage Estimation
by: Phan, Trung V., et al.
Published: (2026)
by: Phan, Trung V., et al.
Published: (2026)
A Framework for the Systematic Assessment of Anomaly Detectors in Time-Sensitive Automotive Networks
by: Meyer, Philipp, et al.
Published: (2024)
by: Meyer, Philipp, et al.
Published: (2024)
Aquaman: A Transparent Proxy Architecture for Quantum Resilient Key Establishment
by: Mallick, Tushin, et al.
Published: (2026)
by: Mallick, Tushin, et al.
Published: (2026)
Scanning the IPv6 Internet Using Subnet-Router Anycast Probing
by: Koch, Maynard, et al.
Published: (2025)
by: Koch, Maynard, et al.
Published: (2025)
A Detailed Measurement View on IPv6 Scanners and Their Adaption to BGP Signals
by: Egloff, Isabell, et al.
Published: (2025)
by: Egloff, Isabell, et al.
Published: (2025)
Evaluating Vulnerabilities of Connected Vehicles Under Cyber Attacks by Attack-Defense Tree
by: Mollah, Muhammad Baqer, et al.
Published: (2025)
by: Mollah, Muhammad Baqer, et al.
Published: (2025)
Applying Transparent Shaping for Zero Trust Architecture Implementation in AWS: A Case Study
by: Wang, Wenjia, et al.
Published: (2024)
by: Wang, Wenjia, et al.
Published: (2024)
Cybersecurity of High-Altitude Platform Stations: Threat Taxonomy, Attacks and Defenses with Standards Mapping - DDoS Attack Use Case
by: Hjaiji, Chaouki, et al.
Published: (2025)
by: Hjaiji, Chaouki, et al.
Published: (2025)
Evasion-Resilient Detection of DNS-over-HTTPS Data Exfiltration: A Practical Evaluation and Toolkit
by: Elaoumari, Adam
Published: (2025)
by: Elaoumari, Adam
Published: (2025)
How Resilient is QUIC to Security and Privacy Attacks?
by: Sengupta, Jayasree, et al.
Published: (2024)
by: Sengupta, Jayasree, et al.
Published: (2024)
Global BGP Attacks that Evade Route Monitoring
by: Birge-Lee, Henry, et al.
Published: (2024)
by: Birge-Lee, Henry, et al.
Published: (2024)
Security Testbed for Preempting Attacks against Supercomputing Infrastructure
by: Cao, Phuong, et al.
Published: (2024)
by: Cao, Phuong, et al.
Published: (2024)
On the cybersecurity of LoRaWAN-based system: a Smart-Lighting case study
by: Hofer, Florian, et al.
Published: (2025)
by: Hofer, Florian, et al.
Published: (2025)
Similar Items
-
SoK: A Data-driven View on Methods to Detect Reflective Amplification DDoS Attacks Using Honeypots
by: Nawrocki, Marcin, et al.
Published: (2023) -
A Survey on DNS Encryption: Current Development, Malware Misuse, and Inference Techniques
by: Lyu, Minzhao, et al.
Published: (2022) -
How to Measure TLS, X.509 Certificates, and Web PKI: A Tutorial and Brief Survey
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024) -
A Call to Reconsider Certification Authority Authorization (CAA)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024) -
Do CAA, CT, and DANE Interlink in Certificate Deployments? A Web PKI Measurement Study
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)