main

Attack code released for new DNS attack

Daniel Fleshbourne   on 24 July 2008 - 11:25 · 6 comments & 3595 views

Advertisement (Why?)
Hackers have released software that exploits a recently disclosed flaw in the Domain Name System (DNS) software used to route messages between computers on the Internet. The attack code was released Wednesday by developers of the Metasploit hacking toolkit.

Internet security experts warn that this code may give criminals a way to launch virtually undetectable phishing attacks against Internet users whose service providers have not installed the latest DNS server patches. Attackers could also use the code to silently redirect users to fake software update servers in order to install malicious software on their computers, said Zulfikar Ramizan, a technical director with security vendor Symantec. "What makes this whole thing really scary is that from an end-user perspective they may not notice anything," he said.

View: The full story @ InfoWorld

Post a comment · Send to friend Comments · There are 6 additional comments
(2 replies) #1 boho on 24 Jul 2008 - 11:59
Does anyone know whether Microsoft has created patches for their Windows DNS service. This whole DNS flaw has been handled badly, it's a shame Neowin can help shed light on the subject, instead of just doing a rather repeat a pointless re-hash (of a botched news story).
#1.1 +warwagon on 24 Jul 2008 - 15:36
It hasn't been handled that badly. I mean it was top secrete up until recently. The guy went to Microsoft, they had a meeting and secretly updated a lot of cisco and all sorts of routers. How is that handled badly?

Just switch to OpenDNS and you should be ok.
#1.2 Aprazeth on 24 Jul 2008 - 17:30
Yes they did release patches for all affected Operating systems.

All patches for it can be found here, along with instructions:
http://www.microsoft.com/technet/security/...n/ms08-037.mspx

KB numbers:
kb951746
kb951748

These have been released for Windows 2000, 2003, 2008 and Windows XP. Windows Vista SP1 was not affected as I recall.

Hope this helps!
(1 reply) #2 mocax on 24 Jul 2008 - 13:19
I think it's more urgent to update named.

Many *nix servers are still using stuff from the previous century.
#2.1 Airlink on 25 Jul 2008 - 01:07
I'd just like to remind you that the "Previous Century" only ended seven years ago.
Remember Y2K?
#3 +/ -Razorfold on 29 Jul 2008 - 03:18
Lol the code is on milw0rm...fun fun =/

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)