1. Introduction
The Domain Name System (DNS) serves as a crucial component of the Internet infrastructure, translating human-readable domain names to machine-readable IP addresses and vice versa. DNS is extensively used to access websites and support fundamental security mechanisms, including email communication [118], certificate validation [32], blacklists [86], and sinkholing [6]. Consequently, DNS has become a notorious target for various network attacks, e.g., DNS cache poisoning and Denial-of-Service (DoS) attacks.