Institutional privacy risks in sharing DNS data

Institutional privacy risks in sharing DNS data
复制标题

共享 DNS 数据的机构隐私风险

DOI:
10.1145/3472305.3472324
复制
发表时间:
2021
期刊:
Proceedings of the Applied Networking Research Workshop (ANRW
影响因子:
--
通讯作者:
Heidemann, John
Heidemann, John
中科院分区:
--
文献类型:
--
作者:
Imana, Basileal;Korolova, Aleksandra;Heidemann, John

文献摘要

参考文献

被引文献

相似文献

域名系统(DNS)用于每个网站访问和电子邮件传输,因此隐私是一个明显的问题。在DNS中,用户要求递归解析器(或“递归”)代表他们进行查询。以前对DNS隐私的分析主要集中在个人最终用户的隐私风险上,主要是用户和递归之间的流量。递归缓存和聚合许多用户的流量,这些因素通常被认为是保护递归之上的最终用户隐私。我们将机构隐私记录为在权威服务器上收集的DNS数据所带来的新风险,即使在DNS递归进行缓存和聚合之后。我们是第一个通过查看显示通信模式的电子邮件交换泄露以及访问敏感网站的泄露来证明这种风险的人,这两种情况都可能损害机构的公共形象。我们定义了一种方法来识别来自机构的查询并识别泄漏。我们表明,目前的做法,前缀保留匿名的IP地址和聚合以上的递归是不足以保护机构的隐私,这表明需要新的方法。我们证明了这一点,我们的方法应用到现实世界的流量从DNS服务器使用部分前缀保留匿名。我们的工作为运行自己的解析器的机构和记录和共享DNS数据的权威服务器运营商提出了额外的隐私考虑。
The Domain Name System (DNS) is used in every website visit and e-mail transmission, so privacy is an obvious concern. In DNS, users ask recursive resolvers (or "recursives") to make queries on their behalf. Prior analysis of DNS privacy focused on privacy risks to individual end-users, mainly in traffic between users and recursives. Recursives cache and aggregate traffic for many users, factors that are commonly assumed to protect end-user privacy above the recursive. We documentinstitutional privacyas a new risk posed by DNS data collected at authoritative servers, even after caching and aggregation by DNS recursives. We are the first to demonstrate this risk by looking at leaks of e-mail exchanges which show communications patterns, and leaks from accessing sensitive websites, both of which can harm an institution's public image. We define a methodology to identify queries from institutions and identify leaks. We show the current practices of prefix-preserving anonymization of IP addresses and aggregation above the recursive are not sufficient to protect institutional privacy, suggesting the need for novel approaches. We demonstrate this claim by applying our methodology to real-world traffic from DNS servers that use partial prefix-preserving anonymization. Our work prompts additional privacy considerations for institutions that run their own resolvers and authoritative server operators that log and share DNS data.
Oblivious DNS:DNS 查询的实用隐私
DOI: --
发表时间: 2018
影响因子: --
作者:
Paul Schmitt;A. Edmundson;N. Feamster
通讯作者: N. Feamster
DNS 根处的 .onion 泄漏:测量、原因和对策
DOI: 10.1109/tnet.2017.2717965
发表时间: 2017
期刊: IEEE/ACM Transactions on Networking
影响因子: --
作者:
Mohaisen, Aziz;Ren, Kui
通讯作者: Ren, Kui
对 DNS 隐私服务运营商的建议
DOI: --
发表时间: 2020
期刊: Request for Comments
影响因子: --
作者:
S. Dickinson;B. Overeinder;R. V. Rijswijk;A. Mankin
通讯作者: A. Mankin
被动 DNS 收集对最终用户隐私的影响
DOI: --
发表时间: 2012
期刊:
影响因子: --
作者:
Jonathan M. Spring;Carly L. Huth
通讯作者: Carly L. Huth
域名解析服务
DOI: 10.1145/2740070.2631442
发表时间: 2014
影响因子: 2.8
作者:
Liang Zhu;Zi Hu;J. Heidemann;D. Wessels;A. Mankin;Nikita Somaiya
通讯作者: Nikita Somaiya