National Repository of Grey Literature 1 records found  Search took 0.01 seconds. 
Cyber Threats in DNS Communication
Půček, Petr ; Grégr, Matěj (referee) ; Matoušek, Petr (advisor)
The aim of this work is to introduce the reader to the threats that occur in the DNS system and implement their detection. The introduction of the work includes research on these threats and obtaining datasets that contain them. Additionally, discovered or created tools are presented that allow for the implementation of selected threats. The work also describes the usability of different monitoring systems for detection, such as logging on BIND 9 server, IPFIX records, or an IDS system. The main output of the work is the creation of a detection tool that is tested for the detection of threats such as Alina POS, DNSMessenger, and SIGRed. The created tool also provides original method for detecting generated domains using DGA algorithms. The benefit of this work is therefore the implementation of a modular detection tool that is easily expandable to support monitoring of additional types and detecting new threats.

Interested in being notified about new results for this query?
Subscribe to the RSS feed.