Harrison St. Suite 403
1930 Hollywood, Florida, us
Michael E. Donner
+1 (954) 620-6017
Prolexic Releases DNS Reflection Attack White Paper
Popular, effective distributed reflection denial of service (DrDoS) attacks disrupt the Internet domain name system to target their victims
In this white paper, prepared by the Prolexic Security Engineering and Response Team (PLXsert) discusses and analyzes DNS Reflection attacks. The DNS Reflection DrDoS technique exploits security weaknesses in the Domain Name System (DNS) Internet protocol, an important Internet feature that allows the public to type in human-friendly domain names instead of numerical IP addresses to access websites.
In this type of attack, a cyberattacker leverages zombie computers in a botnet to send domain name requests to DNS servers in a way that causes DNS servers to send a flood of responses to a targeted domain. This kind of DrDoS attack can overwhelm and slow response times - or completely stop legitimate user access - and affects both the DNS servers and the targeted domain.
A DNS Reflection attack is relatively easy for cybercriminals to launch, and takes advantage of security loopholes in the DNS protocol, PLXsert warns. What's more, it is difficult to pinpoint the source of a reflected DDoS attack, offering anonymity to the attacker.
"DNS Reflection DrDoS attacks are an overlooked but dangerous DDoS attack method," said Stuart Scholly, Prolexic President. "Prolexic is releasing this white paper to help make DNS server administrators, IT administrators and business leaders aware of this potential security threat against their networks. In addition, the white paper can help victims understand the technical details of what took place, so they can more quickly mitigate these kinds of DDoS attacks in the future."
The DNS Reflection Attack white paper explains DNS and how an attacker exploits the protocol to cause an outage. The white paper is available free of charge at www.prolexic.com/drdos.
About the Prolexic Security Engineering & Response Team (PLXsert)
PLXsert monitors malicious cyber threats globally and analyzes DDoS attacks using proprietary techniques and equipment. Through data forensics and post attack analysis, PLXsert is able to build a global view of DDoS attacks, which is shared with customers. By identifying the sources and associated attributes of individual attacks, the PLXsert team helps organizations adopt best practices and make more informed, proactive decisions about DDoS threats.
Details of Prolexic's DDoS mitigation activities and insights into the latest tactics, types, targets and origins of global DDoS attacks are provided in quarterly reports published by the company. A complimentary copy of Prolexic's Q4 2012 Global DDoS Attack Report is available at www.prolexic.com/attackreports.
The use of information published here for personal information and editorial processing is generally free of charge. Please clarify any copyright issues with the stated publisher before further use. In the event of publication, please send a specimen copy to email@example.com.