DNS Security Hole Threatens Internet
Security experts are warning that a major Domain Name Service (DNS) hole could have catastrophic results for the web in the near future. DNS, which is responsible for converting readable names into IP addresses for individuals and major firms alike, is nothing less than the Internet's phonebook.
Without it, imagine the Information Superhighway littered with the overturned, flaming vehicles of visitors.
What's wrong?
So that names indexed by DNS are not repeated with every network connection, systems store the results in a cache for a temporary period. If a hacker could slip false addresses into that cache, he or she could essentially take control of those network connections. Thus, the gaping hole in the DNS could lead to phishing campaigns, password theft, and credit card plundering the likes of which we've never seen before (but always feared). (Source: heise-online.co.uk)
Although it's certainly difficult to replicate the randomly chosen 16-bit transaction ID to make the hack, security researcher and web genius Amit Klein has shown it can be done. Security firms know that if this guy can do it, someone with more sinister intentions eventually could, too.
A solution may be on the way, given that the friendly Klein can offer help. More importantly, security expert Dan Kaminsky has discovered a general method that reduces the odds of a crack sufficiently, preventing cache 'poisoning' for the time being. (Source: abc.net)
Kaminsky doesn't plan on revealing his plan or preliminary research until Black Hat in August. We'll just have to hope the web doesn't become hell's highway between now and then.
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.