Powered by OpenAIRE graph
Found an issue? Give us feedback
ZENODOarrow_drop_down
ZENODO
Other literature type . 2025
License: CC BY
Data sources: Datacite
ZENODO
Other literature type . 2025
License: CC BY
Data sources: Datacite
ZENODO
Other literature type . 2024
License: CC BY
Data sources: Datacite
ZENODO
Other literature type . 2025
License: CC BY
Data sources: Datacite
ZENODO
Other literature type . 2025
License: CC BY
Data sources: Datacite
versions View all 5 versions
addClaim

This Research product is the result of merged Research products in OpenAIRE.

You have already added 0 works in your ORCID record related to the merged Research product.

Misty Registry: An Empirical Study of Flawed Domain Registry Operation

Authors: Zhang, Yunyi; Zhang, Mingming; Liu, Baojun;

Misty Registry: An Empirical Study of Flawed Domain Registry Operation

Abstract

This is an artifact evaluation submission for USENIX Sec '25 Cycle 1 #1151. This study focuses on analyzing the operational security of domain registries to identify potential attack surfaces. The analysis and measurements were conducted using public resources, including TLD zone files, domain registration information, and domain status checking interfaces. Among these resources, the domain registration information primarily consists of WHOIS records maintained by registries and registrars. Since historical WHOIS records are not completely available, we provide a script for active WHOIS data collection for a supplement. Additionally, we performed large-scale measurements to assess the real-world impact of the identified attack surfaces, uncovering vulnerabilities in some domain registries and user domain names. However, adhering to standard vulnerability disclosure requirements, we cannot provide a complete list of affected entities. Instead, we include specific examples to validate our findings. To this end, the provided artifacts include: 1. `resources.md`: A file listing the official sites of publicly available resources. 2. `whois-collection.py`: A script for actively collecting WHOIS records from WHOIS databases. 3. `affected-cases.md`: A document detailing specific examples of affected domain names and steps for validation. 4. `affected-cases.assets`: A folder containing figure files referenced in affected-cases.md. The folder structure is as follows: ``` Misty Registry ├── 1-public-resources │ └── resources.md ├── 2-scripts │ └── whois-collection.py ├── 3-vulnerability-disclosure │ ├── affected-cases.assets │ │ ├── twiin.app-1.png │ │ ├── twiin.app-2.png │ │ ├── twiin.app-3.png │ │ ├── twiin.app-4.jpg │ │ ├── xn--86q281bo5hhlb.cn-1.png │ │ └── xn--86q281bo5hhlb.cn-2.png │ └── affected-cases.md └── README ```

  • BIP!
    Impact byBIP!
    citations
    This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    0
    popularity
    This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
    Average
    influence
    This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    Average
    impulse
    This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
    Average
Powered by OpenAIRE graph
Found an issue? Give us feedback
citations
This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Citations provided by BIP!
popularity
This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
BIP!Popularity provided by BIP!
influence
This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Influence provided by BIP!
impulse
This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
BIP!Impulse provided by BIP!
0
Average
Average
Average
Upload OA version
Are you the author of this publication? Upload your Open Access version to Zenodo!
It’s fast and easy, just two clicks!