Advertisement
Promo

Mobile working Toolkit in association with http://marketing.ianywhere.com/forms/EMEA09SUPSybaseMobilityLeadership-IDC

Download now

Detection and Prevention of DNS Query PTR Record-Based Distributed Denial-of-Service Attack

PublisherKumamoto University
Format127.0KB PDFDate added29 Oct 2004
Topics Network Security, Denial of Service, Intrusion Detection Systems
Downloads66

The syslog messages of the topdomain DNS servers in Kumamoto University were statistically investigated when having receiving a large amount of DNS query packets like a Distributed Denial-of-Service (DDoS) attack. The interesting results are: The DNS query-based DDoS attacking packets considerably include reverse (PTR) records. The PTR records include a lot of unregistered IP addresses of the university as their query contents. Thus, one can detect the DNS query-based DDoS attack by only watching the traffic of unregistered IP address-based DNS query PTR record packets. Also, the author developed and implemented an Intrusion Prevention System (IPS) for the DNS query-based DDoS attack on the top domain DNS servers.

Download now

Did you find this white paper useful?
9 out of 10 users found this white paper useful


  • Trackback
  • Clip Link

Related white papers

MessageLabs Intelligence : 2009 security Predictions

Having analyzed the global threat landscape for almost a decade, MessageLabs Team Skeptic™ is comprised of many world-renowned malware and spam experts who have a global view of threats across...


IDC Vendor Spotlight

Organised ubiquity is a must for organisations to sucessfully "project" their users in any given landspace, at any given time, with secuirty policy. This White Paper covers issues surrounding secure...


Web application security: automated scanning versus manual penetration testing.

Research has shown that a vast number of Web sites are vulnerable to Web application attacks and that a great percentage of these attacks occur over the HTTP/S protocols, ports...


Trend Micro Enterprise Security white paper

This white paper reviews the content security threat landscape and how it has evolved into a more dangerous and high risk environment. The paper discussed how conventional content security approaches...


Smart Protection E-Book

"Outthink the Threat: Why conventional protection is no match for new data-stealing malware & the Trend Micro Smart Protection Network is." Discover how cyber criminals are rendering traditional security solutions...


Secure Desktop On-Demand Webcast

The desktop or endpoint is one of the most vulnerable parts of your environment. Threats are everywhere. You have users who love to experiment with device settings (only to wonder...


Smart Protection whitepaper-IDC Analyst

A highly respected senior IDC analyst comments on Trend Micro Smart Protection Network: "Whilst it is a grand vision, IDC believes Trend has done a remarkable job of addressing customer...


Broadband Deals? Powered by Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Mobile Broadband »
White Paper

Featured White Paper

Technical Description: IBMXIV Storage System

The IBMXIV® Storage System offers a new level of high-end disk system performance and reliability. It is a core component of theIBMInformation Infrastructure which helps clients address their needs for availability, security, compliance and retention of information. The XIVsystem provides consistency under all conditions, immunity to hotspots, ...

Download Now

Other White Papers

Best Practices for Translating Customer Satisfaction into Revenue

Today's support organisations are focused on two top-level metrics: financial results and customer...

Data Quality Considerations for a Master Data Management Structure

Companies acquiring companies. Human Resources sharing information with Finance. Businesses...

See All White Papers


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters