Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
DNS SecURItY via Leet QueRieS [pdf] (gatech.edu)
2 points by nurple on Dec 18, 2024 | hide | past | favorite | 1 comment


Apparently, some DNS query implementations use an "0x20 bit encoding" to add additional random bits to the query ID for poisoning attack resistance.

I've been trying to track down a DNS latency issue in my network and noticed a device doing this and initially thought it was malware, but there is an RFC[0](though expired), and Google announced that they had implemented this for queries from their public DNS servers in 2023[1].

0. https://datatracker.ietf.org/doc/html/draft-vixie-dnsext-dns...

1. https://groups.google.com/g/public-dns-discuss/c/KxIDPOydA5M




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: