Load Distributed and Benign-Bot Mitigation Methods for IoT DNS Flood Attacks.

Tasnuva Mahjabin,Yang Xiao,Tieshan Li,C. L. Philip Chen
DOI: https://doi.org/10.1109/jiot.2019.2947659
IF: 10.6
2020-01-01
IEEE Internet of Things Journal
Abstract:A domain name system (DNS) is one of the most important infrastructures of the Internet communication. It is also a crucial point which is subjected to attacks. The largest distributed denial-of-service (DDoS) attack on October 21, 2016 has targeted a major DNS infrastructure named dynDNS. It was actually the Internet of Things (IoT) DNS flood attack that made more than half of websites in the United States unreachable for a significant amount of time. As we are using the Internet for everything in our life, especially health care and transportation, an attack of this type may cause a major disruption. Therefore, in this article, we are going to analyze the DNS flood attacks and propose two mitigation methods. We propose a load distributed mitigation process which will work as a quick escape route of the legitimate traffic from the attack field. Our solution mainly involves service level changes which can be implemented with collaboration among service providers. Also, our proposed solution is very cost effective as compared to the cost of downtime of the domain names caused by a DNS flood attack. Furthermore, we propose a benign-bot mitigation method and a business model for the method. In the benign-bot mitigation method, a bot program is installed in customers’ DNS local servers to allow IP addresses of a list of paid businesses’ websites to maintain in the caches so that the websites can be accessed even when the DNS servers are down.
What problem does this paper attempt to address?