Titan-Doh: Trust-Integrated Threat Adaptive Network for Post-Quantum Secure Dns Over Https

35 Pages Posted: 25 Apr 2025

See all articles by Basharat Ali

Basharat Ali

Nanjing University

Guihai Chen

Nanjing University

Abstract

The prevalence of encryption alone has rendered DNS over HTTPS (DoH) environments not robust enough to counter contemporary attackers, who increasingly employ encrypted tunnels, AI-generated domain patterns, and centralized resolver exploits to bypass conventional detection. This research defies the increasing opacity of malicious DoH traffic with TITAN-DoH—a mathematically rigorous, trust-enriched system that redefines DNS  security as a dynamic, context-aware, and post-quantum-resilient mesh. We present a five-pillar multilayered security framework of synergistic design: (i) a novel Trust Algebra quantifying resolver credibility on the dimensions of cryptographic fidelity, latency, and behavioral consistency; (ii) Graph Signal Processing (GSP) for detecting spectral anomalies in DNS query graphs; (iii) Bayesian Contextual Engines inferring intent from encrypted traffic metadata; (iv) FrodoKEM-strengthened TLS handshakes to provide lattice-secure quantum resilience; and (v) Verifiable Delay Functions for temporal query authentication and replay attack protection. To verify feasibility, we built a testbed that simulated over 1000 clients and resolvers with actual encrypted DoH streams. Our testbed ensured sub-180 ms FrodoKEM handshakes in adversarial network loss, while Bayesian classifiers achieved 99.1% DGA detection accuracy without payload inspection. GSP modules identified entropy shifts for tunneling and beaconing, with anomaly propagation constrained within 500 ms using adaptive trust recalibration. Natively, TITAN-DoH breaks new ground with its integration of decentralized consensus, time based cryptographic proof, and human-interpretable client-side threat modeling into a deployable and modular architecture. Our experimentation, conducted under controlled levels of stress parameters, empirically demonstrates both security robustness and scalability—positioning TITAN-DoH as a post-quantum-ready sentinel for secure, intelligent DNS infrastructure.

Keywords: Network security, Network Protocols, Security Enhancement, DNS over HTTPS, TITAN-DoH, Aurora-DoH, Enhancement in Network Security

Suggested Citation

Ali, Basharat and Chen, Guihai, Titan-Doh: Trust-Integrated Threat Adaptive Network for Post-Quantum Secure Dns Over Https. Available at SSRN: https://ssrn.com/abstract=5230452 or http://dx.doi.org/10.2139/ssrn.5230452

Basharat Ali (Contact Author)

Nanjing University ( email )

Nanjing
China

Guihai Chen

Nanjing University ( email )

Nanjing
China

Do you have a job opening that you would like to promote on SSRN?

Paper statistics

Downloads
5
Abstract Views
74
PlumX Metrics