Glossary

DNS poisoning

DNS Poisoning

{{anchor:What is DNS poisoning}}

What is DNS poisoning?

Known as a malicious practice, DNS poisoning occurs when false information is introduced into a DNS resolver's cache, causing the name server to return an incorrect IP address. This can divert traffic to an attacker-controlled website, potentially leading to further attacks such as phishing or distribution of malware.

Activities connected with DNS poisoning can include:

{{anchor:What is DNS caching}}

What is DNS caching?

DNS caching refers to the temporary storage of DNS query results, including the mapping of domain names to IP addresses.

The flow of DNS caching follows these steps:

{{anchor:Cache poisoning vs DNS poisoning}}

What is DNS cache poisoning? what is the difference between cache poisoning and DNS poisoning?

Simply put, DNS poisoning covers a broad class of attack methods, whereas DNS cache poisoning specifically targets the resolver's cache. It's also important to remember that DNS poisoning can target different parts of the DNS resolution process.

How does DNS cache poisoning work?

Normally, in cache poisoning, a DNS cache stores recent DNS query results to speed up subsequent requests for the same domain. When a cache poisoning attack strikes, an attacker introduces false information into this cache. The DNS resolver returns incorrect IP addresses for the following queries.

A cache poisoning attack covers:

{{anchor:How Vercara helps}}

Shield your business against DNS poisoning attacks with Vercara

Nothing can fully prevent a DNS poisoning attack from happening, but there are measures you can take that can reduce your risk of harm when one occurs. For example, a good DNS network will help to mitigate this (and other) types of attacks.
At Vercara, our clients use our UltraDNS solution to protect their network against these types of attacks. Our network is built for security first and is trusted by global brands to provide them peace of mind while conducting business online.