15 citations · 39 across the 4 of their papers we have counts for
7 papers · 1 filter
From IP to transport and beyond: cross-layer attacks against applications
Tianxiang Dai, Philipp Jeitner, Haya Shulman +1
We perform the first analysis of methodologies for launching DNS cache poisoning: manipulation at the IP layer, hijack of the inter-domain routing and probing open ports via side c…
Stalloris: RPKI Downgrade Attack
Tomas Hlavacek, Philipp Jeitner, Donika Mirdita +2
We demonstrate the first downgrade attacks against RPKI. The key design property in RPKI that allows our attacks is the tradeoff between connectivity and security: when networks ca…
The Hijackers Guide To The Galaxy: Off-Path Taking Over Internet Resources
Tianxiang Dai, Philipp Jeitner, Haya Shulman +1
Internet resources form the basic fabric of the digital society. They provide the fundamental platform for digital services and assets, e.g., for critical infrastructures, financia…
Injection Attacks Reloaded: Tunnelling Malicious Payloads over DNS
Philipp Jeitner, Haya Shulman
The traditional design principle for Internet protocols indicates: "Be strict when sending and tolerant when receiving" [RFC1958], and DNS is no exception to this. The transparency…
The Impact of DNS Insecurity on Time
Philipp Jeitner, Haya Shulman, Michael Waidner
We demonstrate the first practical off-path time shifting attacks against NTP as well as against Man-in-the-Middle (MitM) secure Chronos-enhanced NTP. Our attacks exploit the insec…
Secure Consensus Generation with Distributed DoH
Philipp Jeitner, Haya Shulman, Michael Waidner
Many applications and protocols depend on the ability to generate a pool of servers to conduct majority-based consensus mechanisms and often this is done by doing plain DNS queries…