Dnsxd: Detecting data exfiltration over dns

J Steadman, S Scott-Hayward - 2018 IEEE Conference on …, 2018 - ieeexplore.ieee.org
… Section III presents the DNS data exfiltration attack, popular opensource tools, and current
… DNSxD SDN-based DNS data exfiltration detection and mitigation solution is introduced. An …

Detection of malicious and low throughput data exfiltration over the DNS protocol

A Nadler, A Aminov, A Shabtai - Computers & Security, 2019 - Elsevier
DNS server’s logs with a peaking high of 47 million requests per hour. Within these DNS logs,
we injected data exfiltration traffic from DNS … To that end, we introduce our dataset of DNS

Monitoring enterprise DNS queries for detecting data exfiltration from internal hosts

J Ahmed, HH Gharakheili, Q Raza… - … on Network and …, 2019 - ieeexplore.ieee.org
… This is because DNS traffic is usually … of data without fear of detection. This paper develops
and evaluates a real-time mechanism for detecting exfiltration and tunneling of data over DNS

Detecting DNS over HTTPS based data exfiltration

M Zhan, Y Li, G Yu, B Li, W Wang - Computer Networks, 2022 - Elsevier
… security and many introduce severe vulnerabilities [30]. Therefore, we only focus on
unencrypted features from the DoH traffic to perform data exfiltration detection in this work. …

DNS exfiltration detection in the presence of adversarial attacks and modified exfiltrator behaviour

K Žiža, P Tadić, P Vuletić - International Journal of Information Security, 2023 - Springer
… Section 2 presents the related work in the field of data exfiltration, DNS exfiltration and … This
paper provides a thorough introduction into the operation of various DNS tunnelling systems …

Lightweight hybrid detection of data exfiltration using dns based on machine learning

S Mahdavifar, A Hanafy Salem, P Victor… - Proceedings of the …, 2021 - dl.acm.org
… of DNS services, enterprises often set the firewalls to let DNS traffic in, which encourages the
adversaries to exfiltrate encoded data … and slow data exfiltration and tunneling over DNS, in …

A DNS tunneling detection method based on deep learning models to prevent data exfiltration

J Zhang, L Yang, S Yu, J Ma - … , NSS 2019, Sapporo, Japan, December 15 …, 2019 - Springer
… In more detail, We describe the data exfiltration over DNS tunneling (Sect. 2.1), DNS … In this
paper, we first illustrate the data exfiltration over DNS tunnel. Then, we explain that detecting …

DNSxP: Enhancing data exfiltration protection through data plane programmability

J Steadman, S Scott-Hayward - Computer Networks, 2021 - Elsevier
… a DNS data exfiltration Protection (DNSxP) security architecture leveraging Software-Defined
Networking and Data Plane … by introducing detection of DNS data exfiltration attacks at the …

Data Exfiltration: Preventive and detective countermeasures

A Lal, A Prasad, A Kumar, S Kumar - Proceedings of the …, 2022 - papers.ssrn.com
… A network protection server is introduced for monitoring the IP of the data leaving the … the
use cases of exploiting DNS. For DNS data exfiltration detection they used linear regularized …

Data exfiltration: A review of external attack vectors and countermeasures

F Ullah, M Edwards, R Ramdhany, R Chitchyan… - Journal of Network and …, 2018 - Elsevier
Data exfiltration can be perpetrated by an outsider or an insider of an organization. … number
of data exfiltration incidents, a large number of data exfiltration countermeasures … Introduction