---
id: "cache-poisoning"
kind: "glossary-term"
title: "缓存投毒"
language: "zh-Hans"
category: "安全与滥用"
updated: "2026-10-10T12:00:00Z"
canonical: "https://tldlog.com/zh/cihui/huancun-toudu/"
translations:
  en: "https://tldlog.com/glossary/cache-poisoning/"
  es: "https://tldlog.com/es/glosario/envenenamiento-cache/"
  de: "https://tldlog.com/de/glossar/cache-poisoning/"
  fr: "https://tldlog.com/fr/glossaire/empoisonnement-cache/"
  it: "https://tldlog.com/it/glossario/avvelenamento-cache/"
  pt-BR: "https://tldlog.com/pt/glossario/envenenamento-cache/"
  ru: "https://tldlog.com/ru/glossariy/otravlenie-kesha/"
---

# 缓存投毒

一种把虚假应答塞进解析器缓存的攻击，使查询真实域名的用户被引向错误地址。Dan Kaminsky于2008年展示了这种攻击的可行程度。随机源端口使攻击难度大大增加，而DNSSEC使解析器能够识别伪造的应答。

## 相关术语

- [解析器](https://tldlog.com/zh/cihui/jiexiqi/)
- [DNSSEC](https://tldlog.com/zh/cihui/dnssec/)
- [网址嫁接](https://tldlog.com/zh/cihui/wangzhi-jiajie/)
- [DNS劫持](https://tldlog.com/zh/cihui/dns-jiechi/)
- [TTL](https://tldlog.com/zh/cihui/ttl/)
