DNS Under the Microscope: Major 2020 Survey Maps a Decade of Security & Privacy Threats

The Domain Name System (DNS) — the internet’s fundamental “phonebook” that turns human-readable names like example.africa into machine-routable IP addresses — remains one of the most critical yet vulnerable components of global infrastructure. A comprehensive new survey published in Computer Networks reviews more than 170 peer-reviewed papers from the past decade and delivers a clear-eyed assessment of where DNS security and privacy stand today.

What the Survey Covers

Led by researchers from the University of Central Florida (Aminollah Khormali, Jeman Park, Hisham Alasmary, Afsah Anwar, Muhammad Saad, and David Mohaisen), the paper systematically examines:

  • The DNS Threat Landscape — including amplification & DDoS attacks, cache poisoning, botnets & C&C communication, phishing, DNS manipulation, malicious domain detection, Domain Generation Algorithms (DGAs), domain name squatting (typosquatting, bitsquatting, combosquatting, soundsquatting), parked domain monetization abuse, and privacy leakage.
  • Research Methods — comparing passive DNS (PDNS) vs. active DNS (ADNS) data collection, machine learning techniques, association analysis, and the split between studies focused on vanilla DNS versus DNSSEC.
  • Entity-Level View — analyzing vulnerabilities across DNS name servers, open resolvers, hosting services, and end-user clients to identify which parts of the ecosystem are most exposed.

The authors highlight both progress (e.g., better detection systems, some defensive mechanisms like DNSSEC and rate limiting) and persistent shortcomings: low deployment of strong protections, detection accuracy gaps, latency overheads, and the continued rise of sophisticated attacks, especially those leveraging IoT devices and evolving monetization schemes.

Why It Matters

DNS was originally designed for scalability and simplicity, not security or privacy. As the internet has grown, attackers have repeatedly exploited that trust. This survey serves as both a valuable reference for practitioners and a roadmap for researchers, clearly flagging open problems that still require attention — from improving lightweight detection to addressing privacy risks in an era of increasing encryption and third-party resolvers.

Original source:
Khormali, A., Park, J., Alasmary, H., Anwar, A., Saad, M., & Mohaisen, D. (2020). Domain name system security and privacy: A contemporary survey. Computer Networks. https://doi.org/10.1016/j.comnet.2020.107699 (Journal Pre-proof version).

For anyone working in domain infrastructure, cybersecurity, or internet governance, this paper is essential reading. It consolidates a fragmented research area into one coherent picture of how far we’ve come — and how much work remains to keep the internet’s naming system trustworthy.