...
首页> 外文期刊>Procedia Computer Science >The Role of DNS TTL Values in Potential DDoS Attacks: What Do the Major Banks Know About It?
【24h】

The Role of DNS TTL Values in Potential DDoS Attacks: What Do the Major Banks Know About It?

机译:DNS TTL值在潜在的DDoS攻击中的作用:主要银行对此了解多少?

获取原文

摘要

In this paper, we examine the impact of DNS TTL values on the overall user experience in accessing a web site. We demonstrate that a web-site that utilizes inappropriate DNS TTL values could experience damaging and costly consequences, especially if falling victim to a DDoS attack. Subsequently, we represent the results of our survey that has looked into the DNS TTL values of the major US and EU banks. The results of this survey show that in the world of financial institutions, the level of assets and public exposure is highly correlated with the level of sophistication in DNS (Record) management. Specifically, we show that a number of (often smaller-scale) banks choose inappropriately long DNS TTL values, creating a vulnerability that could be easily exploited by an adversary.
机译:在本文中,我们研究了DNS TTL值对访问网站的总体用户体验的影响。我们证明,使用不适当的DNS TTL值的网站可能会遭受破坏和代价高昂的后果,尤其是如果成为DDoS攻击的受害者时。随后,我们代表了调查的结果,该调查研究了美国和欧盟主要银行的DNS TTL值。这项调查的结果表明,在金融机构的世界中,资产和公众参与程度与DNS(记录)管理的复杂程度高度相关。具体而言,我们表明,许多(通常是较小规模的)银行选择了不适当的长DNS TTL值,从而创建了一个容易被对手利用的漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号