Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

July 25, 2008 12:00 AM

Large ISPs Still Vulnerable to DNS Attack

Windows IT Pro
InstantDoc ID #99866
Rating: (0)

According to Neal Krawetz of Hacker Factor, several large ISPs still haven't patched their DNS servers to guard against a critical vulnerability that was made public two weeks ago.

Dan Kaminsky reported the flaw and took special care to ensure that information about the problem was kept quiet until major software vendors could make patches available. Exploits are already on the loose but meanwhile countless Internet users are at risk because their ISPs still haven't installed the available patches or taken steps to secure all their DNS servers through other methods.

According Krawetz's survey of 60 DNS servers, as of July 24 seventeen DNS servers are still vulnerable to attack. The offending ISPs including Comcast, Adelphia, BTInternet, Sprintlink, Bellsouth, Tmnet Streamyx, Xtra, and Wave Broadband.

Kaminsky also offered statistics that he gathered through a DNS vulnerability testing tool available on his website. Anyone can use the tool to test the DNS server currently configured in their TCP/IP settings. As of July 25, Kaminsky reports that the last 5,000 vulnerability tests conducted by the tool reveal that 2,503 are still vulnerable. Many of those vulnerable servers undoubtedly belong to major ISPs.

Related Content:

ARTICLE TOOLS

Comments
    There are no comments to display. Be the first one!
You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.