Darksat IT Security Forums
July 09, 2025, 12:41:52 pm
Welcome, Guest. Please login or register.

Login with username, password and session length
News: Darksat IT Security Forum
From Firewall Support, AntiVirus Questions, Spyware problems, Linux and Windows Security, Black Hat SEO right down to Website Design and Multimedia
 
  Home Help Search Gallery Links Staff List Login Register  
  Show Posts
Pages: [1]
1  Your Web / News / Re: How serious is Dan Kaminsky's DNS spoof discovery? on: July 24, 2008, 10:43:03 pm
Might not be overhyped. With the POC out, I checked several different DNS servers and about 90% of them were vulnerable. Even patched systems may be vulnerable if they are sitting behind nat devices. Since ISP vendors werent invited to be part of Kaminskys alliance, none of them have released signatures.
2  Your Web / Links / Excellent site for IT Security news and information on: July 24, 2008, 01:18:09 pm
www.netleets.com
3  Hardware, Software and Security / IT Security Forum / Re: Firewall Security. on: July 13, 2008, 08:55:27 pm
Application layer firewalls are useless. If the packet has to traverse all the way to the APp layer before its filtered, it can do nothing for DOS or overflows. An enterprise class solution would involve a perimiter firewall and an application specific firewall by 2 seperate verdors.
4  Hardware, Software and Security / IT Security Forum / Re: Online port scanner. on: July 13, 2008, 08:45:15 pm
Nice.
In response to the nmap comment, I would rather have my port scan show up from their ISP instead of mine.
5  Hardware, Software and Security / IT Security Forum / Re: Bypass firewalls and web filters with your-freedom.net on: July 13, 2008, 08:43:30 pm
How is this any different from Tor or any of the other client based proxies? If a company is strict enough to lock down internet access, one would hope they also lock down local admin privilidges.
6  Your Web / News / How serious is Dan Kaminsky's DNS spoof discovery? on: July 13, 2008, 08:15:02 pm
I have read on some sites that this is the most serious DNS vulnerability ever. Recently ive read on Full Disclosure that this is extremely over-hyped.
AParently all of the major vendors have released updates but we all know that 80% of the companies affected wont apply updates before November.
Pages: [1]
Powered by EzPortal
eXTReMe Tracker
Security Forum
Bookmark this site! | Upgrade This Forum
SMF For Free - Create your own Forum


Powered by SMF | SMF © 2016, Simple Machines
Privacy Policy
Page created in 0.039 seconds with 18 queries.