Sponsored White Papers, Webcasts, and Downloads
ZDNet Dictionary Definition
- DNS
- Domain Name System A system for converting host names and domain names into IP addresses on the Internet or on local networks that use the TCP/IP protocol. For...
- Full DNS Definition >>
ZDNet Resources
- How OpenDNS, PowerDNS and MaraDNS remained unaffected by the DNS cache poisoning vulnerability
- How OpenDNS, PowerDNS and MaraDNS remained unaffected by the DNS cache poisoning vulnerabilityOpenDNS is greatI have been using OpenDNS for over 5 months now on the company network and it does a great job for us. I would recommend everyone use this tool as it has increased our DNS...
- Tags: Domain names, NETWORKING, OpenDNS, MaraDNS, Powerdns, DNS Cache Poisoning Vulnerability, DNS
- Discussion threads 2008-07-25
- Microsoft joins 'patch DNS now' chant; Apple patch missing
- Microsoft joins 'patch DNS now' chant; Apple patch missingI couldn't make this stuff up if I triedSeriously, I'm not that creative.[url=http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=48138&messageID=898138] Apple fan explains why Apple isn't responsible for PWN2OWN vulnerability [/url][i]A Perl exploit isn't an Apple bug, anymore than the Flash exploit on the Vista machine was a Microsoft...
- Tags: Apple Mac OS X, Domain names, Apple Mac OS, Operating systems, DNS, Microsoft Corp., Apple Inc.
- Discussion threads 2008-07-25
- Microsoft joins 'patch DNS now' chant; Apple patch missing
- On the heels of the release of weaponized exploit code for the DNS cache poisoning vulnerability, Microsoft has joined the chorus of security pros pleading with DNS server providers to immediately apply patches to protect users from malicious attacks. The Redmond, Wash. security...
- Tags: Apple Macintosh, DNS, Vulnerability, Apple Inc., Exploit Code, Microsoft Corp., Attack, Dan Kaminsky, Domain Names, Apple Mac OS X, Networking, Security, Internet, Operating Systems, Software, Apple Mac OS, Ryan Naraine
- Blog posts 2008-07-25
- How OpenDNS, PowerDNS and MaraDNS remained unaffected by the DNS cache poisoning vulnerability
- The short answer is being paranoid about tackling a known vulnerability. It's 2001, and Daniel J. Bernstein DJB, author of the then popular djbdns security-aware DNS implementation, is applying basic math principles to raise awareness on what's to turn into the "sky is falling" critical Internet vulnerability in 2008, in...
- Tags: DNS, Vulnerability, Anomaly, Attack, OpenDNS, MaraDNS, NSS, Domain Names, Networking, Internet, Dancho Danchev
- Blog posts 2008-07-25
- AT&T iPhones exposed to DNS cache poisioning? Or not?
- Here's a photo of my iPhone after running Dan Kaminsky's Doxpara DNS Checker tool a few minutes ago: I ran the same test at the DNS-OARC's DNS checker and got this: 209.183.33.23 (schinetdns.mycingular.net) appears to have GREAT source port randomness and GREAT transcation...
- Tags: DNS, AT&T Corp., Domain Names, Networking, Internet, Ryan Naraine
- Blog posts 2008-07-24
- News to know: DNS flaw; Amazon; Microsoft shakeup; Facebook
- Notable headlines: Ryan Naraine: Researchers borrow from Google PageRank for network defense service Attack code published for DNS flaw Nate McFeters: |)ruid and HD Moore release part 2 of DNS exploit 'Spam King' escapes from federal prison iPhone vulnerable to phishing,...
- Tags: Apple iPhone, Facebook, DNS, Amazon.com Inc., Microsoft Corp., Microsoft Xbox, Flaw, Game Players, Domain Names, Networking, Security, Consumer Electronics, Personal Technology, Internet, Larry Dignan
- Blog posts 2008-07-24
- |)ruid and HD Moore release part 2 of DNS exploit
- |)ruid and HD Moore release part 2 of DNS exploitSo, Linux's BIND the first to be exploited...So, Linux's BIND the first to be exploited...Nice work!CoolNate, nice post and analysis!Wasn't the replacing the ns.victim.com cache entry part of the Halvar Flake speculation? I thought first part of the exploit was to...
- Tags: Domain names, NETWORKING, Operating systems, Alecco, DNS, ruid, exploit, HD Moore, Linux
- Discussion threads 2008-07-24
- Code Diffs for DNS Exploit Code
- Diffs between revisions of the exploit code released by HDM and |)ruid. Generated by Billy Rios. by Nathan McFeters
- Tags: Revision, DNS, Exploit Code, Domain Names, Networking, Internet, Nathan McFeters, diffs, code, Exploit, HDM, |)ruid, Billy, Rios, McFeters, Nate, Nathan, screenshots
- Image galleries 2008-07-23
- |)ruid and HD Moore release part 2 of DNS exploit
- [Updated 07/24/2008: Gallery images of diffs of code revisions has been included and will be updated as things change, see here.] Earlier today, noted researchers |)ruid and HD Moore released exploit code for the Metasploit tool for attacking the DNS flaw that was originally reported by Dan...
- Tags: DNS, Domain, Server, Entry, Exploit, NS, NS Record, Domain Names, Networking, Internet, Nathan McFeters
- Blog posts 2008-07-23
- Attack code published for DNS flaw
- Attack code published for DNS flawIrresponsible and evil"In an IM exchange, Moore told me his exploit takes about a minute or two to poison a DNS cache but said he is working to improve it in version 2.0."As far as i am concerened he is just an evil person to...
- Tags: Domain names, Halvar, exploit, DNS
- Discussion threads 2008-07-23
- News to know: Yahoo; VMware; Apple; DNS vulnerability
- Notable headlines: Ryan Naraine: Vulnerability disclosure gone awry: Understanding the DNS debacle RIM ships fix for BlackBerry code execution bug Dancho Danchev: Georgia President's web site under DDoS attack from Russian hackers 75% of online banking sites found vulnerable to security design...
- Tags: Apple iPhone, Google Inc., Larry Dignan, DNS, Yahoo! Inc., Vulnerability, Dana Blankenhorn, Health Care, Apple Inc., VMware Inc., App Store, Banking, Vertical Industries, Domain Names, Benefits, Healthcare, Security, Financial Services, Enterprise Software, Software, Internet, Human Resources
- Blog posts 2008-07-23
- Vulnerability disclosure gone awry: Understanding the DNS debacle
- Vulnerability disclosure gone awry: Understanding the DNS debacleI think he deserved better for sureYou know, Dan does manipulate the media well, but I'll tell you this, he's a stand-up guy. Did he try to drum up the press a bit? Sure, why not? Did he choose his...
- Tags: Domain names, Advertising & Promotion, Dan, DNS
- Discussion threads 2008-07-22
- Vulnerability disclosure gone awry: Understanding the DNS debacle
- On July 7, the day before the release of the patch for the now infamous DNS design flaw, hacker Dan Kaminsky with the help of Black Hat conference organizers invited reporters to a press conference to "discuss the massive multivendor patch being released this Tuesday." "A synchronized...
- Tags: Black Hat, DNS, Conference, Dan Kaminsky, Thomas Ptacek, Domain Names, Patches, Security, Networking, Internet, Ryan Naraine
- Blog posts 2008-07-22
- Has Halvar figured out super-secret DNS vulnerability?
- Has Halvar figured out super-secret DNS vulnerability?Good Lord!Whatever does happen, this has been fun to read about.in summaryHalvar's approach is to play a game in which you win with a low probability. If you are able to win the race with the authoritative server and guess one TXID, you...
- Tags: Games, Domain names, Halvar, TXID, game, DNS
- Discussion threads 2008-07-21
- Has Halvar figured out super-secret DNS vulnerability?
- [ UPDATE: Kaminsky has all but confirmed that, yes, the cat is out of the bag ] It looks very much like the nitty gritty of Dan Kaminsky's super-secret -- and heavily hyped -- DNS cache poisoning vulnerability has been figured out by reverse engineering guru Halvar...
- Tags: DNS, Vulnerability, Server, Referral, Mallory, Domain Names, Networking, Security, Internet, Ryan Naraine
- Blog posts 2008-07-21
- Kaminsky to discuss DNS flaw at Black Hat sponsored webcast
- The Black Hat group on Twitter provided a message today alerting people to a webcast to be put on by Dan Kaminsky on the DNS vulnerabilities that I've heavily covered as follows: Dan Kaminsky breaks DNS, massive multi-vendor patch coming, details at Black Hat Vegas '08 ...
- Tags: Black Hat, Webcast, DNS, Flaw, Domain Names, Networking, Internet, Nathan McFeters
- Blog posts 2008-07-15
- News to know: iPhone; DNS patch; Online privacy; VMware; Vista
- Notable headlines: Tom Steinert-Threlkeld: A Modest Privacy Proposal Richard Koman: Congress looks at next-gen ad networks Techmeme: iPhone reviews Matthew Miller: MSM Apple iPhone reviews are up and may just have saved me some cash ...
- Tags: Apple iPhone, DNS, Online Privacy, Microsoft Windows Vista, Apple Inc., VMware Inc., Microsoft Corp., HP iPAQ 910, 3G, Domain Names, Cellular Phones, Wireless, Networking, Consumer Electronics, Personal Technology, Internet, Larry Dignan
- Blog posts 2008-07-09
- Don't doubt Deputy Dan
- Well, it would seem that Tom Ptacek may have figured out something to do with Dan Kaminsky's earlier DNS flaw, and this may actually be the vulnerability to fear that we had originally heard. Let's just say this, I've read Tom's postings on the Matasano blog for quite some time...
- Tags: DNS, Domain Names, Networking, Internet, Nathan McFeters
- Blog posts 2008-07-08
- Kaminsky and Ptacek comment on DNS flaw
- Kaminsky and Ptacek comment on DNS flaw"Important"I guess Microsoft agrees that it's not a really scary vulnerability.ActuallyI talked to Dan about this. It early on threw me off too, but their rating has to do with the fact that it is a spoofing flaw, and not an arbitrary code...
- Tags: Domain names, SECURITY, Ptacek, Kaminsky, DNS, flaw
- Discussion threads 2008-07-08
- Kaminsky and Ptacek comment on DNS flaw
- Well, well, well, what a day for security news! I got a chance to get the scoop word of mouth from Dan Kaminsky of IOActive (pictured above [image courtesy of quinnums]) and Thomas Ptacek of Matasano pictured below on the DNS flaw that's been all over the...
- Tags: DNS, Flaw, Nate, Domain Names, Networking, Security, Internet, Nathan McFeters
- Blog posts 2008-07-08
White Papers and Webcasts