olsr.funkfeuer.at
Thursday, July 24, 2008
  update DNS now!
The discussion about Dan Kaminsky's discovery of the DNS vulnerability just made a new twist and the vulnerability became more scary. Previously it was agreed upon that we (the internet) are given one month time to patch our DNS servers. That went down to "now" when Matasano leaked the attack and thus the public knew.  
Just one day later, the attack is already implemented in metasploit
At CERT.at we analyzed all of Austria's bigger nameservers in detail and found that approx. two thirds of all recursive DNS nameservers in Austria are vulnerable / unpatched! This does not include the numerous dnsqmasq recursive servers on linksyses or other small embedded devices!

What does this all mean?
It means when you thought you were surfing to "www.google.com" (or any link) you might end up at let's say a p0rn site. Or something like that. Or a fake banking site. Not so bad? Well think about it. You will (thanks to DNS poisoning) end up at the p0rn site every the time and not be able to reach google. DNS is fundamental to the internet.

So what to do about it?
  1. check if your DNS server is vulnerable (you can also script this with dig +short porttest.dns-oarc.net TXT)
  2. if it is -> patch! All major DNS server software providers released updates.
  3. Please, take your time for it, now! If you know that your DNS server is unpatched and you can not patch it, bug your sysadmin. 

Aaron Kaplan
(aaron@lo-res.org)


(for a background on why people found out so quickly: read this)



 
olsr next generation development @ funkfeuer

Quick Nav

Links

Mercurial source code repository
funkfeuer.at
freifunk.net
olsr.org
olsr CVS

ARCHIVES
October 2006 / November 2006 / December 2006 / January 2007 / February 2007 / March 2007 / April 2007 / May 2007 / June 2007 / July 2007 / August 2007 / September 2007 / October 2007 / November 2007 / December 2007 / January 2008 / February 2008 / April 2008 / June 2008 / July 2008 /



Google
Locations of visitors to this page