Skip to main content
DNS

Cache poisoning

Definition, context, related terminology, and source references for Cache poisoning.

Definition

The insertion of false DNS data into a resolver cache so future clients receive an attacker-chosen answer. Defenses include strong transaction matching, source-port randomization, DNSSEC validation, cookies, and hardened bailiwick processing.