IOActive’s Kaminsky Warns: DNS Danger Still Exists
IOActive security researcher Dan Kaminsky offered his much-anticipated speech on the DNS vulnerability at the Black Hat conference on Wednesday. His message: Patching your systems is urgent because the risk of cache poisoning is great.Kaminsky discovered the bug in early July. The attack code was released several weeks later by developers of the Metasploit hacking toolkit, headed by the infamous HD Moore.
By exploiting this vulnerability, an attacker can redirect an ISP’s users to a malicious phishing server
every time they try to visit a legitimate Web site. The patches released through various vendors should protect from the threat. Security vendors continue to rush to market with DNS vulnerability patches, checks, protection and other tools. But everyone is not yet protected.
Click here to read the rest of this story.
Add comment August 8th, 2008





