Building a DNS Security Range in a Closed Network (Lightning Talk)

H. Lee, Hyun Min Park, Kyu Don Hwang, Gyeong-Hun Min, Young Sun Park
{"title":"Building a DNS Security Range in a Closed Network (Lightning Talk)","authors":"H. Lee, Hyun Min Park, Kyu Don Hwang, Gyeong-Hun Min, Young Sun Park","doi":"10.1109/ICSSA45270.2018.00031","DOIUrl":null,"url":null,"abstract":"In this paper, we present how we built a DNS security range in a closed network. To enable trainees to practice DNS attack labs, such as DNS amplification and DNS cache poisoning, within a closed network, we implemented a pseudo DNS server emulating upstream servers. A modified version of BIND8, in which DNS transaction IDs increase sequentially as in BIND4, and a custom module for Metasploit were implemented to facilitate DNS cache poisoning attacks.","PeriodicalId":223442,"journal":{"name":"2018 International Conference on Software Security and Assurance (ICSSA)","volume":"34 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 International Conference on Software Security and Assurance (ICSSA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICSSA45270.2018.00031","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

In this paper, we present how we built a DNS security range in a closed network. To enable trainees to practice DNS attack labs, such as DNS amplification and DNS cache poisoning, within a closed network, we implemented a pseudo DNS server emulating upstream servers. A modified version of BIND8, in which DNS transaction IDs increase sequentially as in BIND4, and a custom module for Metasploit were implemented to facilitate DNS cache poisoning attacks.
在封闭网络中构建DNS安全范围(闪电讲座)
在本文中,我们介绍了如何在封闭网络中构建DNS安全范围。为了使学员能够在封闭的网络中练习DNS攻击实验室,例如DNS放大和DNS缓存中毒,我们实现了一个模拟上游服务器的伪DNS服务器。在BIND8的修改版本中,DNS事务id与BIND4一样依次增加,并实现了Metasploit的自定义模块,以方便DNS缓存中毒攻击。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信