republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » DNS Flaw Even Worse Than Predicted
Search Topic:
view: topics flat text 
Post a:

Comments on news posted 2008-08-07 13:34:38: Earlier this summer security researcher Dan Kaminsky reported that there was a major DNS design flaw posing a serious security threat to Internet users. ..

page: 1 · 2
AuthorAll Replies

B
Premium,MVM
join:2000-10-28


1 edit
FTP "Certificates"?

Huh? (Too lazy to read the articles.)

Edit: But having skimmed the Slashdot discussion
»tech.slashdot.org/tech/08/08/07/···52.shtml

it's quickly clear that this is no "news" at all. It's simply a reminder to newbies that DNS affects most Internet-based transactions, not just web traffic.

-- B
--
In a realm outside causality and function


chronoss2008
Premium
join:2008-03-29
site to send too

haha send em to bells tech support , that will have yah in a never ending loop forever......


BSD24
Tier 4
Premium
join:2008-04-30
Middleboro, MA
clubs:
Or Verizon's support in general, specially DSL. the automated system for dsl will tell them to call back at a later time because they are too busy to take their call.
--
BSD


blackzero
Premium
join:2007-08-16
Trois-Rivieres, QC
·Cogeco Cable
·Cogeco Voip
·Bell Sympatico

Imagine now future hacking attacks!

Imagine now getting into a hacker's private server by only going to »https://www.paypal.com/

Some software also uses hostnames for auto-updating features. Imagine now downloading virus by going to windows update or something like that.

I hope that flaw will be fixed soon.....

jgantert

join:2004-06-02
Columbia, MD

Verizon DNS still ranks POOR

I'm suprised, just ran the tests again, and my Verizon FiOS DNS servers (71.242.0.12 and 71.252.0.12) still come back as POOR. Very suprising. I can't belive they haven't patched them yet!

Glad I switched to OpenDNS a while back!


Shamayim
I already have a Messiah.
Premium
join:2002-09-23

said by jgantert See Profile :

Glad I switched to OpenDNS a while back!
Can someone explain why OpenDNS remains immune?
--
Who is Jesus? and Why it matters (to YOU).


Anonymous_
Anonymous
Premium
join:2004-06-21
127.0.0.1
clubs:
reply to jgantert
i use Level 3 they ARE 20% faster in ms

jgantert

join:2004-06-02
Columbia, MD
Yeah, those DNS servers look good now that they are patched.


Anonymous_
Anonymous
Premium
join:2004-06-21
127.0.0.1
clubs:
·RoadRunner Cable
·Time Warner Cable
·Time Warner VOIP

said by jgantert See Profile :

Yeah, those DNS servers look good now that they are patched.
well on Avg level 3 servers are 7 ms faster then TWC's shit servers

B
Premium,MVM
join:2000-10-28

reply to Shamayim
"Remaining" immune isn't a problem. Once a server is properly reconfigured, you're done, pretty much.

The unpatched servers are run by people who are either (a) lazy, (b) irresponsible, or (c) cheap. Pick three.

-- B
--
In a realm outside causality and function


battleop

join:2005-09-28
00000
reply to Anonymous_
Hah a whole 7ms.


GemSnake
Premium
join:2000-10-19
3rd layer
clubs:
reply to Anonymous_
7ms will save the world. True story.

Pee. Ess. Give me an effin break!


TKJunkMail
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast

reply to Shamayim
said by Shamayim See Profile :

said by jgantert See Profile :

Glad I switched to OpenDNS a while back!
Can someone explain why OpenDNS remains immune?
OpenDNS's founder and CEO says here that OpenDNS's servers were never vulnerable and he posted on his blog that he would explain later why that was the case. But he never did.
»blog.opendns.com/2008/07/08/open···ou-safe/
I’m very proud to announce that we are one of the only DNS vendor / service providers that was not vulnerable when this issue was first discovered by Dan. During Dan’s testing he confirmed (and we later confirmed) that our DNS implementation is not susceptible to the attack that was discovered.

We’re going to write more about this issue in the next 24 hours to address the vulnerability in detail and explain why we aren’t affected but I wanted to get the word out now so that you know you are safe using OpenDNS.
Maybe he thought better of putting out on the internet why his DNS servers are immune for fear of giving hackers ideas on how to attack his servers. If I were him I wouldn't be giving out any info that might make life easier for the scum hackers of the world.
--
My BLOG .. .. Internet News .. .. My Web Page
Ask yourself one question: 'Do I feel lucky?' Well, do ya punk?


Dryvlyne
Far Beyond Driven
Premium
join:2004-08-30
Newark, OH

So basically...

the entire Internet as we know it really should be rebuilt from the ground up to truly nip this flaw. I guess this is just what happens when the most fundamental of all Internet protocols gets a huge hole in it, everything else that rides on top of it immediately becomes vulnerable as well.

Well, I suppose we can all start memorizing and using the IP addresses of our favorite sites to ensure we're really getting to the site we requested
--
In relative terms life is shorter than the blink of an eye. Remember that each and every day because in the end it's not about what you've done but how you've lived.

jgantert

join:2004-06-02
Columbia, MD

reply to B
Re: Verizon DNS still ranks POOR

said by B See Profile :

The unpatched servers are run by people who are either (a) lazy, (b) irresponsible, or (c) cheap. Pick three.
(d)Incompetent

B
Premium,MVM
join:2000-10-28
Okay, pick four.

-- B


Angralitux

join:2004-05-20
DO

Online tests ??

can someone point to online tests or procedures to see if a friend's friend is vulnerable ?

Please not the one on Dan's blog, that one never works.
--
All Is possible...


Anonymous_
Anonymous
Premium
join:2004-06-21
127.0.0.1
clubs:
reply to GemSnake
Re: Verizon DNS still ranks POOR

yea but google takes 20second LAG to load with TWC dns server with level3 1 seocnd


scelli
Native New Yorker
Premium
join:1999-08-07
USA

reply to B
said by B See Profile :

Okay, pick four.

-- B
Here's one more:

(e)-need to be unemployed.
--
The maximum effective range of an excuse is ZERO meters!


scelli
Native New Yorker
Premium
join:1999-08-07
USA

reply to Angralitux
Re: Online tests ??

said by Angralitux See Profile :

can someone point to online tests or procedures to see if a friend's friend is vulnerable ?

Please not the one on Dan's blog, that one never works.
»https://www.dns-oarc.net/oarc/services/dnsentropy
--
The maximum effective range of an excuse is ZERO meters!
Forums » DNS Flaw Even Worse Than Predictedpage: 1 · 2


Saturday, 28-Nov 07:30:27 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF