DNS and the Threat of DDoS
The Domain Name System (DNS) was one of the major innovations that made the Internet possible. But today, massive botnets are being used to stage ever-larger cyber attacks using, and targeting, DNS infrastructure.
In recent years, attackers have been able to take down essential services and huge patches of the Internet using large distributed denial-of-service (DDoS) attacks against DNS, with a large number of high-profile sites and organizations experiencing service disruptions and outages. Traditional hardware-based DDoS mitigation services that use scrubbing centers to eliminate malicious traffic cannot scale to win in the arms race against distributed and essentially free botnets.