Exploring the Threats of Decentalised DNS
Unravelling Ariadne's Thread: Exploring the Threats of Decentalised DNS Constantinos Patsakis1,2, Fran Casino1, Nikolaos Lykousas1, and Vasilios Katos3 1University of Piraeus 2Athena Research Center 3Bournemouth University Abstract The current landscape of the core Internet technologies shows con- siderable centralisation with the big tech companies controlling the vast majority of traffic and services. This has sparked a wide range of de- centralisation initiatives with perhaps the most profound and successful being the blockchain technology. In the past years, a core Internet in- frastructure, domain name system (DNS), is being revised mainly due to its inherent security and privacy issues. One of the proposed panaceas is Blockchain-based DNS, which claims to solve many issues of traditional DNS. However, this does not come without security concerns and issues, as any introduction and adoption of a new technology does - let alone a disruptive one such as blockchain. In this work, we discuss a num- ber of associated threats, including emerging ones, and we validate many of them with real-world data. In this regard, we explore a part of the blockchain DNS ecosystem in terms of the browser extensions using such technologies, the chain itself (Namecoin and Emercoin), the domains, and users which have been registered in both platforms. Finally, we provide some countermeasures to address the identified threats, and we propose a fertile common ground for further research. arXiv:1912.03552v1 [cs.CR] 7 Dec 2019 Keywords: Malware, DNS, Blockchain, Blockchain Forensics, Cybercrime 1 Introduction One could argue that there is a periodic paradigm shift between centralisation and decentralisation in computer science.
[Show full text]