Detection, characterization, and profiling DoH Malicious traffic using statistical pattern recognition

S Niktabe, AH Lashkari, DP Sharma - International Journal of Information …, 2024 - Springer
The domain name system (DNS) protocol has been used for over three decades. It plays a
vital role in the functioning of the Internet by facilitating the conversion of domain names into …

A lightweight double-stage scheme to identify malicious DNS over HTTPS traffic using a hybrid learning approach

Q Abu Al-Haija, M Alohaly, A Odeh - Sensors, 2023 - mdpi.com
The Domain Name System (DNS) protocol essentially translates domain names to IP
addresses, enabling browsers to load and utilize Internet resources. Despite its major role …

Feature engineering and machine learning model comparison for malicious activity detection in the dns-over-https protocol

M Behnke, N Briner, D Cullen, K Schwerdtfeger… - IEEE …, 2021 - ieeexplore.ieee.org
The Domain Name System (DNS) is among the most ubiquitous and important protocols for
network communication; however, security concerns regarding DNS have been on the rise …

Detecting malicious doh traffic: Leveraging small sample analysis and adversarial networks for detection

S Wu, W Wang, Z Ding - Journal of Information Security and Applications, 2024 - Elsevier
In light of the escalating frequency of DNS attacks, it is imperative to bolster user security
and privacy through the encryption of DNS queries. However, conventional methods for …

[HTML][HTML] Real time detection of malicious DoH traffic using statistical analysis

M Moure-Garrido, C Campo, C Garcia-Rubio - Computer Networks, 2023 - Elsevier
The DNS protocol plays a fundamental role in the operation of ubiquitous networks. All
devices connected to these networks need DNS to work, both for traditional domain name to …

An ensemble framework for detection of DNS-Over-HTTPS (DOH) traffic

A Aggarwal, M Kumar - Multimedia Tools and Applications, 2024 - Springer
Abstract Domain Name System (DNS) is a fundamental protocol and backbone of the
internet that translates domain names to Internet Protocol (IP) addresses. Initially, it was only …

Intelligent model for the detection and classification of encrypted network traffic in cloud infrastructure

M Dawood, C Xiao, S Tu, FA Alotaibi, MM Alnfiai… - PeerJ Computer …, 2024 - peerj.com
This article explores detecting and categorizing network traffic data using machine-learning
(ML) methods, specifically focusing on the Domain Name Server (DNS) protocol. DNS has …

Doh insight: Detecting dns over https by machine learning

D Vekshin, K Hynek, T Cejka - … of the 15th International Conference on …, 2020 - dl.acm.org
Over the past few years, a new protocol DNS over HTTPS (DoH) has been created to
improve users' privacy on the internet. DoH can be used instead of traditional DNS for …

[PDF][PDF] Detecting malicious dns over https traffic in domain name system using machine learning classifiers

YM Banadaki, S Robert - Journal of Computer Sciences and …, 2020 - researchgate.net
This paper presents a systematic two-layer approach for detecting DNS over HTTPS (DoH)
traffic and distinguishing Benign-DoH traffic from Malicious-DoH traffic using six machine …

Classifying DNS over HTTPS Malicious/Benign Traffic Using Deep Learning Models

M Chougule, K Praveen, S Viswanathan… - … Conference on Soft …, 2023 - ieeexplore.ieee.org
As we live in an era where privacy over the Internet has become rudimentary, protocols like
DNS over HTTPS (DoH) and DNS over TLS (DoT), which promote encryption, have become …