Characterizing Optimal DNS Amplification Attacks and Effective Mitigation

Characterizing Optimal DNS Amplification Attacks and Effective Mitigation
复制标题

表征最佳 DNS 放大攻击和有效缓解措施

DOI:
--
复制
发表时间:
2015
期刊:
Passive and Active Network Measurement Conference
影响因子:
--
通讯作者:
Andrew J. Kalafut
Andrew J. Kalafut
中科院分区:
--
文献类型:
--
作者:
D. C. MacFarland;Craig A. Shue;Andrew J. Kalafut

文献摘要

被引文献

相似文献

攻击者在超过 34% 的大容量 DDoS 攻击中使用了 DNS 放大,其中一些洪水超过 300 Gbps。目前的最佳做法并不能在攻击期间帮助受害者;它们是第三方组织必须提前采取的预防措施。不幸的是,没有激励这些第三方遵循这些建议。虽然从业者一直致力于减少开放 DNS 解析器的数量,但这些努力并没有解决权威 DNS 服务器带来的威胁。
Attackers have used DNS amplification in over 34 % of high-volume DDoS attacks, with some floods exceeding 300 Gbps. The best current practices do not help victims during an attack; they are preventative measures that third-party organizations must employ in advance. Unfortunately, there are no incentives for these third parties to follow the recommendations. While practitioners have focused on reducing the number of open DNS resolvers, these efforts do not address the threat posed by authoritative DNS servers.