{"id":"https://openalex.org/W2167370920","doi":"https://doi.org/10.1109/dsn.2009.5270363","title":"WSEC DNS: Protecting recursive DNS resolvers from poisoning attacks","display_name":"WSEC DNS: Protecting recursive DNS resolvers from poisoning attacks","publication_year":2009,"publication_date":"2009-06-01","ids":{"openalex":"https://openalex.org/W2167370920","doi":"https://doi.org/10.1109/dsn.2009.5270363","mag":"2167370920"},"language":"en","primary_location":{"id":"doi:10.1109/dsn.2009.5270363","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dsn.2009.5270363","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2009 IEEE/IFIP International Conference on Dependable Systems &amp; Networks","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5071832270","display_name":"Roberto Perdisci","orcid":"https://orcid.org/0000-0002-7339-0041"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Roberto Perdisci","raw_affiliation_strings":["Damballa, Inc., Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"Damballa, Inc., Atlanta, GA, USA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067105657","display_name":"Manos Antonakakis","orcid":"https://orcid.org/0000-0003-1578-8307"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Manos Antonakakis","raw_affiliation_strings":["College of Computing, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"College of Computing, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100400376","display_name":"Xiapu Luo","orcid":"https://orcid.org/0000-0002-9082-3208"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiapu Luo","raw_affiliation_strings":["College of Computing, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"College of Computing, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5047140382","display_name":"Wenke Lee","orcid":"https://orcid.org/0000-0003-2761-1277"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Wenke Lee","raw_affiliation_strings":["College of Computing, Georgia Institute of Technology, Atlanta, GA, USA"],"affiliations":[{"raw_affiliation_string":"College of Computing, Georgia Institute of Technology, Atlanta, GA, USA","institution_ids":["https://openalex.org/I130701444"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5071832270"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":5.3834,"has_fulltext":false,"cited_by_count":59,"citation_normalized_percentile":{"value":0.96033149,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"3","last_page":"12"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10651","display_name":"IPv6, Mobility, Handover, Networks, Security","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10651","display_name":"IPv6, Mobility, Handover, Networks, Security","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12326","display_name":"Network Packet Processing and Optimization","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/domain-name-system","display_name":"Domain Name System","score":0.8996468782424927},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7340105772018433},{"id":"https://openalex.org/keywords/round-robin-dns","display_name":"Round-robin DNS","score":0.692821204662323},{"id":"https://openalex.org/keywords/name-server","display_name":"Name server","score":0.668340802192688},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.6388882994651794},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6335189938545227},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.5119479894638062},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.49314945936203003},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1869567632675171},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.1463000774383545}],"concepts":[{"id":"https://openalex.org/C35026560","wikidata":"https://www.wikidata.org/wiki/Q8767","display_name":"Domain Name System","level":3,"score":0.8996468782424927},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7340105772018433},{"id":"https://openalex.org/C102359118","wikidata":"https://www.wikidata.org/wiki/Q178163","display_name":"Round-robin DNS","level":4,"score":0.692821204662323},{"id":"https://openalex.org/C105320234","wikidata":"https://www.wikidata.org/wiki/Q41494","display_name":"Name server","level":3,"score":0.668340802192688},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.6388882994651794},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6335189938545227},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.5119479894638062},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.49314945936203003},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1869567632675171},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.1463000774383545}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/dsn.2009.5270363","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dsn.2009.5270363","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2009 IEEE/IFIP International Conference on Dependable Systems &amp; Networks","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.6200000047683716,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306110","display_name":"U.S. Department of Homeland Security","ror":"https://ror.org/00jyr0d86"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":17,"referenced_works":["https://openalex.org/W148814131","https://openalex.org/W1494575468","https://openalex.org/W1828150029","https://openalex.org/W1859864512","https://openalex.org/W1912248131","https://openalex.org/W1927311981","https://openalex.org/W2096904182","https://openalex.org/W2097981871","https://openalex.org/W2111427271","https://openalex.org/W2112074340","https://openalex.org/W2150995021","https://openalex.org/W2164037159","https://openalex.org/W2240246332","https://openalex.org/W2272023646","https://openalex.org/W4211029693","https://openalex.org/W4231879123","https://openalex.org/W4300958237"],"related_works":["https://openalex.org/W1598490273","https://openalex.org/W2183899684","https://openalex.org/W2384391311","https://openalex.org/W2073523380","https://openalex.org/W4299443900","https://openalex.org/W1542874264","https://openalex.org/W1569990158","https://openalex.org/W2065991182","https://openalex.org/W2054545906","https://openalex.org/W596534943"],"abstract_inverted_index":{"Recently,":[0],"a":[1,26,46,55,83,143,151,205],"new":[2],"attack":[3,146],"for":[4,147,168],"poisoning":[5,43,89,123,145],"the":[6,18,32,59,62,98,117,195],"cache":[7,42,88,122,144],"of":[8,48,61,97,119,121,128,154,208],"Recursive":[9],"DNS":[10,23,39,63,80,87,92,99,112,134,158,164,186],"(RDNS)":[11],"resolvers":[12],"was":[13],"discovered":[14],"and":[15,101,197],"revealed":[16],"to":[17,28,53,58,86,115,140,163,173,183],"public.":[19],"In":[20,74],"response,":[21],"major":[22],"vendors":[24],"released":[25,33],"patch":[27,34],"their":[29],"software.":[30],"However,":[31],"does":[35,192],"not":[36,69,172,193],"completely":[37],"protect":[38],"servers":[40,165],"from":[41],"attacks":[44,124],"in":[45,135],"number":[47],"practical":[49],"scenarios.":[50],"DNSSEC":[51,67],"seems":[52],"offer":[54],"definitive":[56],"solution":[57,85],"vulnerabilities":[60],"protocol,":[64],"but":[65],"unfortunately":[66],"has":[68,139],"yet":[70],"been":[71],"widely":[72],"deployed.":[73],"this":[75],"paper,":[76],"we":[77],"proposeWild-card":[78],"SECure":[79],"(WSEC":[81],"DNS),":[82],"novel":[84],"attacks.":[90],"WSEC":[91,111,133,157,185],"relies":[93],"on":[94,104],"existing":[95],"properties":[96],"protocol":[100],"is":[102,113,187],"based":[103],"wild-card":[105],"domain":[106],"names.":[107],"We":[108],"show":[109],"that":[110,166,200],"able":[114],"decrease":[116],"probability":[118],"success":[120],"by":[125],"several":[126],"orders":[127],"magnitude.":[129],"That":[130],"is,":[131],"with":[132],"place,":[136],"an":[137,178],"attacker":[138],"persistently":[141],"run":[142],"years,":[148],"before":[149],"having":[150],"non-negligible":[152],"chance":[153],"success.":[155],"Furthermore,":[156],"offers":[159],"complete":[160],"backward":[161],"compatibility":[162],"may":[167],"any":[169],"reason":[170],"decide":[171],"implement":[174],"it,":[175],"therefore":[176],"allowing":[177],"incremental":[179],"large-scale":[180,206],"deployment.":[181],"Contrary":[182],"DNSSEC,":[184],"deployable":[188],"immediately":[189],"because":[190],"it":[191],"have":[194,201],"technical":[196],"political":[198],"problems":[199],"so":[202],"far":[203],"hampered":[204],"deployment":[207],"DNSSEC.":[209]},"counts_by_year":[{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":5},{"year":2018,"cited_by_count":2},{"year":2017,"cited_by_count":1},{"year":2016,"cited_by_count":5},{"year":2015,"cited_by_count":5},{"year":2014,"cited_by_count":4},{"year":2013,"cited_by_count":3},{"year":2012,"cited_by_count":9}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
