Slashdot Mirror


Ten Percent of DNS Servers Still Vulnerable

maotx writes "Even with the uproar caused by the recent DNS attacks, a recent study shows that roughly 10% of 2.5 million DNS servers show that they are still vulnerable to DNS cache poisoning. To put that a little bit more in perspective, of that 10% discovered, 230,000 were identified as potentially vulnerable, 60,000 are very likely to be open to this specific type of attack, and 13,000 have a cache that can definitely be poisoned." From the article: "The use of DNS cache poisoning to steal personal information from people by sending them to spoofed sites is a relatively new threat. Some security companies have called this technique pharming."

10 of 170 comments (clear)

  1. What? by ucahg · · Score: 5, Funny

    230,000 were identified as potentially vulnerable, 60,000 are very likely to be open to this specific type of attack, and 13,000 have a cache that can definitely be poisoned.

    Okay, let's have it for unclear writing!

    Seriously, what does this even mean? Of the 250,000 that are vulnerable, 230,000 are vulnerable, 60,000 are vulnerable, and 13,000 are vulnerable.

    Okay, that clears it up.

  2. Re:Admins - Take some initiative! by Anonymous Coward · · Score: 3, Funny
    Why is it that the Admins can't take it upon themselves to keep their software updated with the latest patches?

    Maybe they are all Microsoft Certified?

  3. Phor God's sakes! by Zab+UvWxy · · Score: 5, Funny

    Some security companies have called this technique pharming.

    Phor phuck's sakes! I've had enough of this phreaking 733T-speak from the phucking security compaines! It was original with phreaking; it was mildly amusing with phishing; now it's just annoying.

    Why not just leave the terminology as "DNS cache poisoning" and be done with it?
    [/rant]

    --
    "I don't get it." -- ObviousGuy
    1. Re:Phor God's sakes! by TheSneak · · Score: 5, Funny

      -Pharming!? Who the hell makes up these names anyways?

      -He's new sir. Guy by the name of "Daffy duck".

      -You realize of course, that this means war...

      --
      Nasa spent billions making a pen capable of writing in space. The Russians just use a pencil.
    2. Re:Phor God's sakes! by DigitalReverend · · Score: 3, Funny

      Who knows, down the road, there may be some graphics bug out there where hackers can put a picture or some other art right on your screen. They will probalby call it pharting

      --
      I read Slashdot for the headlines, because the headlines, unlike the articles, are usually original and never duplicated
  4. New term! by springbox · · Score: 3, Funny
    "Some security companies have called this technique pharming."

    A lot of these new vulnerabilities have the "phat" theme as dictated by the industry's leading security researcher/rapper Prompt Master Chizzy. Expect an RFC soon on the new naming convention.

    1. Re:New term! by witch · · Score: 3, Funny

      Shouldn't we expect a Request Phor Comments instead?

      --
      They're taking their dog to get its two shots before it's too late. You're taking your dog there too, right?
  5. Executive board meeting... by Epistax · · Score: 3, Funny

    Exec 1: We at our company want a an attack name with attitude. It's edgy, it's "in your face." You've heard the expression "as easy as stealing from a baby"? Well this is an attack which makes it "eezzay!". Consistently and thoroughly.

    CEO: So it's speculative, huh?

    Exec 1: Oh, God, yes. We're talking about a totally outrageous paradigm.

    Exec 2: Execuse me, but "speculative" and "paradigm"? Aren't these just buzzwords that dumb people use to sound important? [backpedaling] Not that I'm accusing you of anything like that. [pause] I'm fired, aren't I?

    CEO: Oh, yes.
    CEO: The rest of you start thinking up a name for this funky attack. I dunno, something along the line of say... farming, only more dangerous and 1337.

    Exec 1: So, Pharming okay with everybody?

    All: [reclining in their chairs] Yeah...

  6. Re:Admins - Take some initiative! by Ravatar · · Score: 2, Funny

    You forgot to praise linux, A- for effort though.

  7. Can I get a list? by PhraudulentOne · · Score: 4, Funny

    Can I get a list of these vulnerable servers so I can.. umm... see if I'm on it and patch my systems? Yeah.. that's it.

    --
    You create your own reality - Leave mine to me.