On the reduction of authoritative DNS cache timeouts: detection and implications for user privacy

dc.contributor.authorHernández Quintanilla, Tomás
dc.contributor.authorMagaña Lizarrondo, Eduardo
dc.contributor.authorMorató Osés, Daniel
dc.contributor.authorIzal Azcárate, Mikel
dc.contributor.departmentIngeniaritza Elektrikoa, Elektronikoaren eta Telekomunikazio Ingeniaritzareneu
dc.contributor.departmentInstitute of Smart Cities - ISCen
dc.contributor.departmentIngeniería Eléctrica, Electrónica y de Comunicaciónes_ES
dc.date.accessioned2021-06-21T10:03:36Z
dc.date.available2021-06-21T10:03:36Z
dc.date.issued2021
dc.description.abstractThe domain name system (DNS) is an Internet network service that is used by hosts to resolve IP addresses from symbolic names. This basic service has been attacked and abused many times, as it is one of the oldest and most vulnerable services on the Internet. Some DNS resolvers conduct DNS manipulation, in which authoritative DNS responses are modified. This DNS manipulation is sometimes used for legitimate reasons (e.g., parental control) and other times is used to support malicious activities, such as DNS poisoning or data collection. Between these DNS manipulation activities, some Internet service providers (ISPs) are changing the DNS cache timeout of the DNS responses with which their DNS resolvers responded to obtain additional data about their subscribers. These data can be a detailed web browsing profile of the user. This approach does not require a large investment and can yield huge benefits if the information is used or sold. Therefore, user privacy is disputed. We conducted a study in which we analyse how ISPs use this DNS manipulation, propose a method for identifying this DNS manipulation by the end-user and determine the amount of information an ISP can collect by using it. We also developed a public web tool, for which the source code is available, that can help Internet users determine whether their privacy is being compromised by their ISP via the exploitation of DNS cache timeouts. This service can facilitate the collection of data on how many people are victims of this abuse and which ISPs around the world are utilizing this technique.en
dc.description.sponsorshipThis work was supported by the Spanish State Research Agency with project PID2019-104451RB-C22/AEI/10.13039/501100011033.en
dc.format.extent16 p.
dc.format.mimetypeapplication/pdfen
dc.identifier.doi10.1016/j.jnca.2020.102941
dc.identifier.issn1084-8045
dc.identifier.urihttps://academica-e.unavarra.es/handle/2454/40008
dc.language.isoengen
dc.publisherElsevieren
dc.relation.ispartofJournal of Network and Computer Applications 176 (2021) 102941en
dc.relation.projectIDinfo:eu-repo/grantAgreement/AEI/Plan Estatal de Investigación Científica y Técnica y de Innovación 2017-2020/PID2019-104451RB-C22/ES/
dc.relation.publisherversionhttps://doi.org/10.1016/j.jnca.2020.102941
dc.rights© 2020 The Author(s). This is an open access article under the CC BY licenseen
dc.rights.accessRightsinfo:eu-repo/semantics/openAccess
dc.rights.urihttps://creativecommons.org/licenses/by/4.0/
dc.subjectDNS cacheen
dc.subjectDNS manipulationen
dc.subjectUser privacyen
dc.titleOn the reduction of authoritative DNS cache timeouts: detection and implications for user privacyen
dc.typeinfo:eu-repo/semantics/article
dc.type.versioninfo:eu-repo/semantics/publishedVersion
dspace.entity.typePublication
relation.isAuthorOfPublicationc521bf55-a1e7-47b2-ac98-5fbf8c286f7a
relation.isAuthorOfPublicationcd454059-725e-480a-b896-894e79f307a5
relation.isAuthorOfPublicationf829a159-0938-45d1-a352-d28fb297ed0b
relation.isAuthorOfPublication.latestForDiscoveryc521bf55-a1e7-47b2-ac98-5fbf8c286f7a

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
2021020205_Hernandez_ReductionAuthoritative.pdf
Size:
6.26 MB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed to upon submission
Description: