IoT DNS Security and Privacy with UCL and Inria
ID: ecec7e3f-b41b-5754-aa87-aac5f56e3b7d
STIX ID: report--ecec7e3f-b41b-5754-aa87-aac5f56e3b7d
Feed Name: Infoblox Blog
This research report from UCL and Inria examines DNS behavior in 30 consumer IoT devices and identifies multiple security and operational weaknesses—lack of encrypted DNS, hardcoded resolvers, predictable source ports/transaction IDs, absence of DNSSEC, TTL misuse, and EDNS0 fragmentation problems—and recommends actionable mitigations for manufacturers, network operators, and standards bodies (adopt encrypted DNS, allow configurable resolvers, randomize DNS fields, support DNSSEC/EDNS0, publish management domains, and reference IETF guidance).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
