Now on ScienceBlogs: Oh, no! School wi-fi is making our kids sick! (2012 edition)

ScienceBlogs Book Club: Inside the Outbreaks

Greg Laden's Blog

Evolution, Life Sciences, Science Education, Human Evolution, and Stuff

Hornbill170.jpg Looking for stuff about birds?

Darwing_Face.jpg Learn more about Charles Darwin and his work.

Lion_mane170.jpg Lean more about lions

Congo_sidebar.jpg An archaeological expedition to the Congo


The Skeptical Search Engine


Nature Blog Network
Climate Defense Fund


The contents of Greg Laden's Blog are copyrighted by Greg Laden.

Recent Comments

Search

Profile


Click on "About" for the big picture, and "Archives" for the details.


Recent Posts

Blogroll

If you don't see yourself on my blogroll, just drop me a line and let me know. I'll add you.*
*Assuming that I'm on your blogroll, of course!

Archives

« The New Obama Ad | Main | The latest on the Georgia Bigfoot in the Freezer »

DNS Bug: It is still there.

Category: Technology
Posted on: August 15, 2008 3:37 PM, by Greg Laden

image.jpg

Assume for a moment that I've used this DNS exploit to take control of your email account. The most obvious effect is that I can now read your mail. Also, I can read your mail and continue forwarding it to you, so that you never realize there is a problem. I can add attachments to your messages, or infect existing attachments from people you trust with viruses or malware. When your best friend sends a link to you about that funny video on YouTube, well, I can rewrite that link to go anywhere I want.

Yes, folks, the DNS bug is for real and potentially serious. Here's a bit of information on it.

And here's the video from the man himself:

Share on Facebook
Share on StumbleUpon
Share on Facebook
Find more posts in: Technology

TrackBacks

TrackBack URL for this entry: http://scienceblogs.com/mt/pings/78945

Comments

1

Here's the site of the discoverer of the little buggy. He's a little app (DNS checker) that let's you test if you've any reason to panic or not. ^-^

Posted by: student_b | August 15, 2008 3:59 PM

2

Me stupid, me forgot to include linky:

http://www.doxpara.com/?p=1162

Posted by: student_b | August 15, 2008 4:01 PM

3

Thanks Greg, for making us all even more paranoid and nervous than we already is :-((

Posted by: Arj | August 15, 2008 4:43 PM

4

What's really sad is that the NTIA, by consistently delaying, for purely political reasons, to sign on to DNSSEC is, in effect, putting the whole Internet at risk via this bug. Good article on it today in Wired - http://blog.wired.com/27bstroke6/2008/08/experts-accuse.html

Posted by: Doug Alder | August 16, 2008 12:09 AM

5

Not that this is failsafe by any stretch but using something like Opendns.org can help with some DNS issues. I've got it installed on my home server to test it out and so far seems pretty seamless fast. I'll probably set up our DNS servers at work to use it as well provided I don't find any issues with it.

Posted by: Rev. BigDumbChimp, KoT | August 18, 2008 2:02 PM

Post a Comment

(Email is required for authentication purposes only. On some blogs, comments are moderated for spam, so your comment may not appear immediately.)





ScienceBlogs

Search ScienceBlogs:

Go to:

Advertisement
Follow ScienceBlogs on Twitter

© 2006-2011 ScienceBlogs LLC. ScienceBlogs is a registered trademark of ScienceBlogs LLC. All rights reserved.