A Comprehensive Review of DNS-based Distributed Reflection Denial of Service (DRDoS) Attacks: State-of-the-Art

Riyadh Rahef Nuiaa (1), Selvakumar Manickam (2), Ali Hakem ALsaeedi (3)
(1) Department of Computer/College of Education for Pure Sciences, Wasit University, Iraq. National Advanced IPv6 Centre (NAv6), Universiti Sains Malaysia, Malaysia
(2) National Advanced IPv6 Centre (NAv6), Universiti Sains Malaysia
(3) College of computer science and information technology, Universitas of Al-Qadisiyah, Iraq
Fulltext View | Download
How to cite (IJASEIT) :
Rahef Nuiaa, Riyadh, et al. “A Comprehensive Review of DNS-Based Distributed Reflection Denial of Service (DRDoS) Attacks: State-of-the-Art”. International Journal on Advanced Science, Engineering and Information Technology, vol. 12, no. 6, Dec. 2022, pp. 2452-61, doi:10.18517/ijaseit.12.6.17280.
Cyberattacks significantly impact the services based on the internet that is used in our daily lives. Any disruption will make it extremely difficult for us to carry out our daily activities. Cyberattacks will disrupt online services, exploit vulnerabilities to breach databases and servers, and so on. Various systems and services contribute to the Internet’s seamless functionality. The Domain Name System (DNS) is one of the most important services. DNS is used to resolve domain names into machine-readable IP addresses. DNS, like many other Internet services, is vulnerable to cyber-attacks. While DNS faces a slew of threats, one in particular appears to stand out. DNS is vulnerable to a variety of distributed denial-of-service attacks. The distributed reflection denial of service (DRDoS) attack, a flooding attack against DNS servers that renders them unavailable, disrupting domain name resolution activities, is one of the most common variants. DRDoS attacks have been on the rise in recent years. DNS lookup outages would significantly impact our online activities in the world of ultra-connectivity because they are typically the first step in establishing a connection with a server. The purpose of this paper is to present a state-of-the-art review of DRDoS attack detection and mitigation algorithms as well as the datasets on which these algorithms operate. Finally, we discussed each of these algorithms' relative merits and demerits.

Authors who publish with this journal agree to the following terms:

    1. Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution License that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
    2. Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
    3. Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).