The DNS infrastructure is a key component of the Internet and is thus used by a multitude of services, both legitimate and malicious. Recently, several works demonstrated that malicious DNS activity usually exhibits observable dynamics that may be exploited for detection and mitigation. Clearly, reliable differentiation requires legitimate activity to not show these dynamics. In this paper, we show that this is often not the case, and propose a set of DNS stability metrics that help to efficiently categorize the DNS activity of a diverse set of Internet sites. © 2012 Springer-Verlag.
CITATION STYLE
Berger, A., & Natale, E. (2012). Assessing the real-world dynamics of DNS. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 7189 LNCS, pp. 1–14). https://doi.org/10.1007/978-3-642-28534-9_1
Mendeley helps you to discover research relevant for your work.