Resource record
DNS(domain name system ) can be thwarted by using DNSSEC(domain name system security extension).
The DNSSEC add additional resource records and these records define the data type that is being used and it also make sure that no altered header transmission.
They do this by adding an asymmetric cryptography i.e a private key that is specific to a zone is use in encoding a hash of the set of resource records, which is used to create the digital signature to be stored in the resource record