@inproceedings{nksw-tfuco-21, author = {Marcin Nawrocki and Maynard Koch and Thomas C. Schmidt and Matthias W{\"a}hlisch}, title = {{Transparent Forwarders: An Unnoticed Component of the Open DNS Infrastructure}}, booktitle = {Proc. of 17th International Conference on emerging Networking EXperiments and Technologies (CoNEXT)}, publisher = {ACM}, address = {New York}, year = {2021}, pages = {454--462}, abstract = {In this paper, we revisit the open DNS (ODNS) infrastructure and, for the first time, systematically measure and analyze transparent forwarders, DNS components that transparently relay between stub resolvers and recursive resolvers. Our key findings include four takeaways. First, transparent forwarders contribute 26% (563k) to the current ODNS infrastructure. Unfortunately, common periodic scanning campaigns such as Shadowserver do not capture transparent forwarders and thus underestimate the current threat potential of the ODNS. Second, we find an increased deployment of transparent forwarders in Asia and South America. In India alone, the ODNS consists of 80% transparent forwarders. Third, many transparent forwarders relay to a few selected public resolvers such as Google and Cloudflare, which confirms a consolidation trend of DNS stakeholders. Finally, we introduce DNSRoute++, a new traceceroute approach to understand the network infrastructure connecting transparent forwarders and resolvers.}, theme = {nsec|imeasurement}, video = {https://youtu.be/Zr6WAXYDN64}, projectwww = {https://odns.secnow.net/}, code = {https://github.com/ilabrg/artifacts-conext21-dns-fwd}, file = {../papers/nksw-tfuco-21.pdf}, url = {https://doi.org/10.1145/3485983.3494872}, }