Invention Grant
- Patent Title: Method for detection of DNS spoofing servers using machine-learning techniques
-
Application No.: US16905874Application Date: 2020-06-18
-
Publication No.: US11258753B2Publication Date: 2022-02-22
- Inventor: Eduardo Kugler Viegas , Martin Andreoni Lopez , Raphael Machado Monteiro
- Applicant: SAMSUNG ELETRÔNICA DA AMAZÕNIA LTDA.
- Applicant Address: BR São Paulo
- Assignee: SAMSUNG ELETRÔNICA DA AMAZÕNIA LTDA.
- Current Assignee: SAMSUNG ELETRÔNICA DA AMAZÕNIA LTDA.
- Current Assignee Address: BR São Paulo
- Priority: BR1020200031058 20200213
- Main IPC: G06F15/16
- IPC: G06F15/16 ; H04L61/4511 ; H04L61/58 ; G06N20/00 ; H04L29/06 ; H04L67/02 ; H04L61/5007

Abstract:
The present disclosure is related to the network communication technology field and relates to a method for the classification and recognition of the Domain Name System (DNS) server, using machine-learning techniques. The classification process assigns a given DNS server as belonging to a preset of classes. For example, it enables to label a DNS server as either benign or malicious. On the other hand, the recognition process seeks the identification of the DNS server behavioral profile, which, consequently, can be used to assess the DNS server trustworthiness before DNS responses can be reliably used, e.g. identification of well-known and trusted DNS servers. Hence, the present patent, by the means of detecting the DNS server RFC adherence improves user security through the classification and recognition of DNS characteristics. Therefore, security solutions can use the DNS server characteristics to assess its trustworthiness before DNS responses can be reliably used.
Public/Granted literature
- US20210258279A1 METHOD FOR DETECTION OF DNS SPOOFING SERVERS USING MACHINE-LEARNING TECHNIQUES Public/Granted day:2021-08-19
Information query