main
Report a problem

DNS servers, an internet problem?

Daylene   on 03 August 2005 - 15:13 · 7 comments & 1811 views

Advertisement (Why?)
In a scan of 2.5 million DNS (Domain Name System) servers, which act as the White Pages of the Internet, security researcher Dan Kaminsky found that approximately 230,000 DNS servers could be vulnerable to a threat known as DNS cache poisoning.

During a DNS cache poisoning attack, hackers replace the IP addresses of legitimate Web sites stored on the DNS machine with the address of a malicious site. The address then proceeds to redirect people to the bogus site, where they may be required to input personal information, or have harmful software installed on their computer. The technique can even be used to redirect e-mail, experts said.

"The reason behind a potential attack is money" states the SANS Internet Storm Center, which tracks network threats. Attackers usually get paid for every spyware or adware program that they install on a person's computer.

Out of the 2.5 million DNS servers scanned in the test, 230,000 servers were identified as potentially vulnerable, 60,000 are very likely to be open to this specific type of attack, and 13,000 have a cache that can definitely be poisoned.

View: DNS cache poisoning in the Wikipedia

Post a comment · Send to friend Comments · There are 7 additional comments
#1 Shadrack on 22 Jul 2008 - 14:59
Wow...that sucks.

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)