Open In App

What is a DNS Amplification Attack?

DNS Amplification Attack :
In this article, we will learn about the DNS Amplification Attack and how it can be prevented.

A DNS (domain name system) Amplification Attack is basically a type of DDoS (denial-of-service) attack. It uses different technologies to attack the network by disabling it and not allowing legitimate users to use it.



For launching a DNS amplification attack, the attacker replicates the domains and sends a large number of DNS queries to the server, this results in server sending all the records of the responses of the queries to the attacker which then gains the access over the network. For example, if the attacker generates 10 MB of DNS queries, then the server sends back about 1 TB of responses to that queries.

After that, the servers become so busy in handling the queries and traffic that they cannot request any other service from the legitimate users and the attacker finally gets his thing done as the denial-of-service.



DNS AMPLIFICATION ATTACK

DNS Amplification :

Steps in a DNS Attack :

Mitigation of DNS Attacks :

Article Tags :