Open and misconfigured DNS (DDoS) resolvers are increasingly used to amplify distributed denial-of-service attacks. Attackers use spoofing to make it appear as if those requests originated from the target’s IP address. DDoS amplification attacks date back more than 10 years and are based on the fact that small DNS queries can result in significantly larger DNS responses. In addition to having an amplification effect, this technique makes it very hard for the victim to determine the original source of the attack.”]

