Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Patch in Internet's DNS no guarantee against attacks
Computerworld ^ | August 11, 2008 | Gregg Keizer

Posted on 08/11/2008 12:22:34 PM PDT by smokingfrog

Russian researcher claims vulnerabilities can be exploited in less than a day, but others disagree...

Patches meant to fix a flaw in the Internet's Domain Name System (DNS) don't completely protect the Web's traffic cop from attack, a Russian research claimed Friday. 

The head of the non-profit that maintains the most commonly used DNS software, however, said there was little to worry about.

In a blog post , Russian researcher Evgeniy Polyakov said he had created an exploit able to insert bogus routing information into systems running the most-up-to-date version of BIND (Berkeley Internet Name Domain), the popular open-source software that runs a majority of the Web's DNS servers.

BIND 9.5.0-P2 was released Aug. 2 as a follow-on to the initial patch issued July 8, the day that researcher Dan Kaminsky announced the DNS flaw and a coordinated patching effort by several vendors, including Internet Systems Consortium Inc. (ISC), which maintains BIND; Microsoft Corp. ; and Cisco Systems Inc.

Both the July 8 and Aug. 2 BIND updates added source port randomization in the name server to reduce the likelihood of "cache poisoning," the term used to describe attacks that attempt to reroute users' requests for legitimate sites to fakes created to dupe them into entering confidential information.

Polyakov claimed that his exploit was able to insert rogue instructions into a DNS server running BIND 9.5.0-P2, although it took a pair of attacking PCs connected to the server via a Gigabit Ethernet (GigE) network connection about 10 hours to pull off the attack.

"Attack took about half of the day, i.e. a bit less than 10 hours," Polyakov said on his blog. "So, if you have a GigE LAN, any Trojaned machine can poison your DNS during one night."

Computerworld was not immediately able to verify Polyakov's claims.

(Excerpt) Read more at infoworld.com ...


TOPICS: Computers/Internet
KEYWORDS: cachepoisoning; dns; hacking; internet
A more secure (encrypted) routing system is needed for the Internet.
1 posted on 08/11/2008 12:22:35 PM PDT by smokingfrog
[ Post Reply | Private Reply | View Replies]

To: smokingfrog; rdb3; Calvinist_Dark_Lord; GodGunsandGuts; CyberCowboy777; Salo; Bobsat; JosephW; ...

2 posted on 08/11/2008 1:23:46 PM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies]

To: smokingfrog
Photobucket
3 posted on 08/11/2008 1:38:54 PM PDT by martin_fierro (< |:)~)
[ Post Reply | Private Reply | To 1 | View Replies]

To: martin_fierro
I'm not sure you can blame me for destruction of the Internet but I have taken FReeRepublic off line several times...
4 posted on 08/11/2008 3:30:48 PM PDT by tubebender (Why does a round pizza come in a square box?)
[ Post Reply | Private Reply | To 3 | View Replies]

To: smokingfrog

Yawn, more BIND vulnerability.

Doesn’t work against DJBDNS, PowerDNS, MaraDNS


5 posted on 08/11/2008 6:10:35 PM PDT by Freemeorkillme (Nobody gets a free ride on calling our boys losers.)
[ Post Reply | Private Reply | To 1 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson