Detecting malicious dns over https traffic using machine learning

SK Singh, PK Roy - 2020 international conference on …, 2020 - ieeexplore.ieee.org
Network with the internet has grown-up very faster compared with any other technology
around the world. From the beginning of the Internet, the Domain name system (DNS) is an …

[PDF][PDF] Detecting malicious dns over https traffic in domain name system using machine learning classifiers

YM Banadaki, S Robert - Journal of Computer Sciences and …, 2020 - researchgate.net
This paper presents a systematic two-layer approach for detecting DNS over HTTPS (DoH)
traffic and distinguishing Benign-DoH traffic from Malicious-DoH traffic using six machine …

An ensemble framework for detection of DNS-Over-HTTPS (DOH) traffic

A Aggarwal, M Kumar - Multimedia Tools and Applications, 2024 - Springer
Abstract Domain Name System (DNS) is a fundamental protocol and backbone of the
internet that translates domain names to Internet Protocol (IP) addresses. Initially, it was only …

Identifying malicious dns tunnel tools from doh traffic using hierarchical machine learning classification

R Mitsuhashi, A Satoh, Y Jin, K Iida… - … Conference, ISC 2021 …, 2021 - Springer
Although the DNS over HTTPS (DoH) protocol has desirable properties for Internet users
such as privacy and security, it also causes a problem in that network administrators are …

Classifying DNS tunneling tools for malicious DoH traffic

R Alenezi, SA Ludwig - 2021 IEEE Symposium Series on …, 2021 - ieeexplore.ieee.org
Cyber adversaries continuously seek new ways to penetrate security systems and infect
computer infrastructure. The past decade has witnessed a sharp increase in attacks …

A lightweight double-stage scheme to identify malicious DNS over HTTPS traffic using a hybrid learning approach

Q Abu Al-Haija, M Alohaly, A Odeh - Sensors, 2023 - mdpi.com
The Domain Name System (DNS) protocol essentially translates domain names to IP
addresses, enabling browsers to load and utilize Internet resources. Despite its major role …

An explainable AI-based intrusion detection system for DNS over HTTPS (DoH) attacks

T Zebin, S Rezvy, Y Luo - IEEE Transactions on Information …, 2022 - ieeexplore.ieee.org
Over the past few years, Domain Name Service (DNS) remained a prime target for hackers
as it enables them to gain first entry into networks and gain access to data for exfiltration …

Advance approach for detection of DNS tunneling attack from network packets using deep learning algorithms

G Sakarkar, MKH Kolekar, K Paithankar, G Patil… - 2021 - gredos.usal.es
Domain Name System (DNS) is a protocol for converting numeric IP addresses of websites
into a human-readable form. With the development of technology, to transfer information, a …

DNS amplification & DNS tunneling attacks simulation, detection and mitigation approaches

B Rajendran - 2020 International Conference on Inventive …, 2020 - ieeexplore.ieee.org
DNS is a critical infrastructure service of the Internet that translates hostnames to network IP
addresses and vice versa. The criticality of DNS can be evidenced by the fact that all most all …

DoH tunneling detection system for enterprise network using deep learning technique

TA Nguyen, M Park - Applied Sciences, 2022 - mdpi.com
In spite of protection mechanisms for Domain Name System (DNS), such as IP blacklist and
DNS Firewall, DNS still has privacy issues in reality, since DNS is a plain-text protocol …