---
id: "dns-amplification"
kind: "glossary-term"
title: "DNS amplification"
language: "en"
category: "Security and abuse"
updated: "2026-10-04T14:01:23Z"
canonical: "https://tldlog.com/glossary/dns-amplification/"
translations:
  es: "https://tldlog.com/es/glosario/amplificacion-dns/"
  de: "https://tldlog.com/de/glossar/dns-amplification/"
  fr: "https://tldlog.com/fr/glossaire/amplification-dns/"
  it: "https://tldlog.com/it/glossario/amplificazione-dns/"
  pt-BR: "https://tldlog.com/pt/glossario/amplificacao-dns/"
  ru: "https://tldlog.com/ru/glossariy/dns-amplifikatsiya/"
  zh-Hans: "https://tldlog.com/zh/cihui/dns-fangda-gongji/"
---

# DNS amplification

A type of DDoS attack that abuses DNS servers. The attacker sends small queries with the victim's address forged as the sender. The servers send their much larger answers to the victim, multiplying the traffic. Open resolvers and networks that allow forged addresses make it possible.

## related terms

- [DDoS attack](https://tldlog.com/glossary/ddos/)
- [resolver](https://tldlog.com/glossary/resolver/)
- [authoritative server](https://tldlog.com/glossary/authoritative-server/)
- [DNSSEC](https://tldlog.com/glossary/dnssec/)
- [anycast](https://tldlog.com/glossary/anycast/)
