Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Conferences, Workshops, Symposiums, and Seminars
  4. Encrypted DNS double right arrow Privacy? A Traffic Analysis Perspective
 
conference paper

Encrypted DNS double right arrow Privacy? A Traffic Analysis Perspective

Siby, Sandra  
•
Juarez, Marc
•
Diaz, Claudia
Show more
January 1, 2020
27Th Annual Network And Distributed System Security Symposium (Ndss 2020)
27th Annual Network and Distributed System Security Symposium (NDSS)

Virtually every connection to an Internet service is preceded by a DNS lookup. Lookups are performed without any traffic-level protection, thus enabling manipulation, redirection, surveillance, and censorship. To address these issues, large organizations such as Google and Cloudflare are deploying standardized protocols that encrypt DNS traffic between end users and recursive resolvers: DNS-over-TLS (DoT) and DNS-over-HTTPS (DoH). In this paper, we examine whether encrypting DNS traffic can protect users from traffic analysis-based monitoring and censoring. We propose a novel feature set to perform traffic analysis attacks, as the features used to attack HTTPS or Tor traffic are not suitable for DNS' characteristics. We show that traffic analysis enables the identification of domains with high accuracy in closed and open world settings, using 124 times less data than attacks on HTTPS flows. We also show that DNS-based censorship is still possible on encrypted DNS traffic. We find that factors such as end-user location, recursive resolver, platform, or DNS client do negatively affect the attacks' performance, but they are far from completely stopping them. We demonstrate that the standardized padding schemes are not effective. Yet, Tor -which does not effectively mitigate traffic analysis attacks on web traffic- is a good defense against DoH traffic analysis.

  • Details
  • Metrics
Type
conference paper
DOI
10.14722/ndss.2020.24301
Web of Science ID

WOS:000680742600065

Author(s)
Siby, Sandra  
Juarez, Marc
Diaz, Claudia
Vallina-Rodriguez, Narseo
Troncoso, Carmela  
Date Issued

2020-01-01

Publisher

INTERNET SOC

Publisher place

Reston

Published in
27Th Annual Network And Distributed System Security Symposium (Ndss 2020)
ISBN of the book

978-1-891562-61-7

Subjects

Computer Science, Information Systems

•

Computer Science, Theory & Methods

•

Computer Science

Editorial or Peer reviewed

REVIEWED

Written at

EPFL

EPFL units
SPRING  
Event nameEvent placeEvent date
27th Annual Network and Distributed System Security Symposium (NDSS)

San Diego, CA

Feb 23-26, 2020

Available on Infoscience
August 28, 2021
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/180941
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés