0x20 Bit Encoding Case Randomization for Security
The Domain Name System, by design, is case-insensitive when it comes to interpreting domain names. This means that queries for “Example.com”, “example.com”, and “EXAMPLE.COM” are all considered equivalent and resolve to the same resource record. This canonical behavior, while logical from a usability standpoint, opens an intriguing and subtle opportunity to enhance DNS security through…