A4 Vertaisarvioitu artikkeli konferenssijulkaisussa
On the Design of a Simple Network Resolver for DNS Mining
Tekijät: Jukka Ruohonen, Ville Leppänen
Toimittaja: Boris Rachev, Angel Smrikarov
Konferenssin vakiintunut nimi: International Conference on Computer Systems and Technologies
Kustannuspaikka: New York
Julkaisuvuosi: 2016
Kokoomateoksen nimi: CompSysTech '16 Proceedings of the 17th International Conference on Computer Systems and Technologies 2016
Sarjan nimi: ICPS: ACM International Conference Proceeding Series
Vuosikerta: 1164
Aloitussivu: 105
Lopetussivu: 112
Sivujen määrä: 8
ISBN: 978-1-4503-4182-0
DOI: https://doi.org/10.1145/2983468.2983513
Verkko-osoite: http://doi.acm.org/10.1145/2983468.2983513
The domain name system (DNS) offers an ideal distributed database for big data mining related to different cyber security questions. Besides infrastructural problems, scalability issues, and security challenges related to the protocol itself, information from DNS is often required also for more nuanced cyber security questions. Against this backdrop, this paper discusses the fundamental characteristics of DNS in relation to cyber security and different research prototypes designed for passive but continuous DNS-based monitoring of domains and addresses. With this discussion, the paper also illustrates a few general software design aspects.