WO2025243165 - DOMAIN NAME HIJACKING DETECTION
National phase entry is expected:
Publication Number
WO/2025/243165
Publication Date
27.11.2025
International Application No.
PCT/IB2025/055121
International Filing Date
16.05.2025
Title **
[English]
DOMAIN NAME HIJACKING DETECTION
[French]
DÉTECTION DE DÉTOURNEMENT DE NOM DE DOMAINE
[Chinese]
域名劫持检测
Applicants **
CLOUD INTELLIGENCE ASSETS HOLDING (SINGAPORE) PRIVATE LIMITED
Inventors
ZHANG, Mingkai
MA, Yong
Priority Data
202410649686.0
23.05.2024
CN
Application details
| Total Number of Claims/PCT | * |
| Number of Independent Claims | * |
| Number of Priorities | * |
| Number of Multi-Dependent Claims | * |
| Number of Drawings | * |
| Pages for Publication | * |
| Number of Pages with Drawings | * |
| Pages of Specification | * |
| * | |
| Number of Office Actions | * |
| * | |
International Searching Authority |
IPOS
* |
| Recordal of a Change of the Applicant's Name/Address |
Change of Applicant's Name and Address
* |
| Type of Assignment |
The Standard Agent's Assignment
* |
| Applicant's Legal Status |
Legal Entity
* |
| * | |
| * | |
| * | |
| * | |
| * | |
| Entry into National Phase under |
Chapter I
* |
| Patent Delivery |
Send the Letters Patent by Courier
* |
| Translation |
|
* The data is based on automatic recognition. Please verify and amend if necessary.
** IP-Coster compiles data from publicly available sources. If this data includes your personal information, you can contact us to request its removal.
Quotation for National Phase entry
| Country | Stages | Total | |
|---|---|---|---|
| China | Filing, Examination, Granting | 1954 | |
| EPO | Filing, Examination, Granting | 11565 | |
| Japan | Filing, Examination, Granting | 1736 | |
| South Korea | Filing, Examination, Granting | 1200 | |
| USA | Filing, Examination, Granting | 4740 |

Total:
21,195
Contact Us
Abstract[English]
Provided in the embodiments of the present disclosure are a domain name hijacking detection method, a device, a storage medium and a program. The method is applied to a domain name hijacking analysis device in a cloud. The method comprises: acquiring recursive resolution data of a recursive server, the recursive server being a server providing a domain name recursive query service, and the recursive resolution data comprising a domain name actually requested by a user for resolution and an actual domain name resolution result fed back by the recursive server for the domain name; acquiring domain name configuration data of an authoritative domain name server, the domain name configuration data comprising a domain name and a reference domain name resolution result corresponding to the domain name; and, on the basis of the actual domain name resolution result and the reference domain name resolution result, determining whether the domain name is hijacked in the recursive server.[French]
Les modes de réalisation de la présente divulgation concernent un procédé de détection de détournement de nom de domaine, un dispositif, un support de stockage et un programme. Le procédé est appliqué à un dispositif d'analyse de détournement de nom de domaine dans un nuage. Le procédé consiste à : acquérir des données de résolution récursive d'un serveur récursif, le serveur récursif étant un serveur fournissant un service d'interrogation récursive de nom de domaine, et les données de résolution récursive comprenant un nom de domaine réellement demandé par un utilisateur pour une résolution et un résultat de résolution de nom de domaine réel renvoyé par le serveur récursif pour le nom de domaine ; acquérir des données de configuration de nom de domaine d'un serveur de nom de domaine faisant autorité, les données de configuration de nom de domaine comprenant un nom de domaine et un résultat de résolution de nom de domaine de référence correspondant au nom de domaine ; et, sur la base du résultat de résolution de nom de domaine réel et du résultat de résolution de nom de domaine de référence, déterminer si le nom de domaine est détourné dans le serveur récursif.[Chinese]
本公开实施例提供一种域名劫持检测方法、设备、存储介质和程序。该方法应用于云端的域名劫持分析设备,该方法包括:采集递归服务器的递归解析数据,递归服务器是提供域名递归查询服务的服务器,递归解析数据中包括用户实际请求解析的域名以及递归服务器针对域名反馈的实际域名解析结果。获取权威域名服务器的域名配置数据,域名配置数据中包括域名以及域名对应的参考域名解析结果。根据实际域名解析结果与参考域名解析结果,确定域名在递归服务器是否发生劫持。