Show Posts
|
Pages: [1]
|
1
|
Your Web / News / Re: How serious is Dan Kaminsky's DNS spoof discovery?
|
on: July 24, 2008, 10:43:03 pm
|
Might not be overhyped. With the POC out, I checked several different DNS servers and about 90% of them were vulnerable. Even patched systems may be vulnerable if they are sitting behind nat devices. Since ISP vendors werent invited to be part of Kaminskys alliance, none of them have released signatures.
|
|
|
3
|
Hardware, Software and Security / IT Security Forum / Re: Firewall Security.
|
on: July 13, 2008, 08:55:27 pm
|
Application layer firewalls are useless. If the packet has to traverse all the way to the APp layer before its filtered, it can do nothing for DOS or overflows. An enterprise class solution would involve a perimiter firewall and an application specific firewall by 2 seperate verdors.
|
|
|
6
|
Your Web / News / How serious is Dan Kaminsky's DNS spoof discovery?
|
on: July 13, 2008, 08:15:02 pm
|
I have read on some sites that this is the most serious DNS vulnerability ever. Recently ive read on Full Disclosure that this is extremely over-hyped. AParently all of the major vendors have released updates but we all know that 80% of the companies affected wont apply updates before November.
|
|
|
|
|