| By Web 2.0 News Desk | Article Rating: |
|
| August 7, 2008 09:45 AM EDT | Reads: |
1,921 |
"We have anticipated these flaws in DNS for many years and we have basically engineered around them," Ken Silva, chief technology officer at Verisign, told a reporter as Dan Kaminsky (pictured), the man who discovered a loophole in the DNS system that allows web users to be redirected to fake sites even when they have typed in the correct URL, spoke out yesterday publicly for the first time about his discovery at the Black Hat conference in Las Vegas.
Kaminsky has spent the better part of a decade analyzing computer security issues with the Fortune 500. Formerly of Cisco and Avaya, he is presently the Director of Penetration Testing for IOActive, Inc., where he consults for a wide range of companies, including Microsoft. He is a well known public speaker, with his “Black Ops of TCP/IP” presentations being well attended at many conferences.
Try out Kaminskys' checker on your own site:
"Recently, a significant threat to DNS, the system that translates names you can remember (such as www.doxpara.com) to numbers the Internet can route (66.240.226.139) was discovered, that would allow malicious people to impersonate almost any website on the Internet. Software companies across the industry have quietly collaborated to simultaneously release fixes for all affected name servers. To find out if the DNS server you use is vulnerable, click below."
Published August 7, 2008 Reads 1,921
Copyright © 2008 SYS-CON Media, Inc. — All Rights Reserved.
Syndicated stories and blog feeds, all rights reserved by the author.
About Web 2.0 News Desk
The Web 2.0 Journal News Desk keeps you up to speed with all that's happening in the world of the read/write Web and all its mushrooming new facets - from tagging, wikis, mash-ups, and image-sharing to "Advertising 2.0," podcasting, and The Writeable Web.
- AJAX World RIA Conference & Expo Kicks Off in New York City
- An A to Z of Cloud Computing Companies in 2009
- What is Web 3.0?
- Java Kicks Ruby on Rails in the Butt
- Bordeaux in Your Glass
- Ulitzer’s Amazing First 30 Days in Public Beta
- 1st Annual Government IT Expo: Call for Papers Deadline July 15
- BEA Updates WebLogic SOA Portal for Web 2.0 Era
- RIAs for Web 3.0 Using the Microsoft Platform
- Will Ulitzer Dominate News Content on The Web? -Gartner
- AJAX World RIA Conference & Expo Kicks Off in New York City
- Ulitzer to Give Drupal 6.0 Its Biggest Scalability Challenge Yet
- An A to Z of Cloud Computing Companies in 2009
- What is Web 3.0?
- Java Kicks Ruby on Rails in the Butt
- Bordeaux in Your Glass
- Web 2.0 Is Dead. Long Live Web 2.0!
- Web Apps Will Be Built in the Cloud: Keynote Systems Exec
- Ulitzer’s Amazing First 30 Days in Public Beta
- Is Web 2.0 Possible with Existing Open Source Technologies?
- Who Are The All-Time Heroes of i-Technology?
- AJAX World RIA Conference & Expo Kicks Off in New York City
- Personal Branding Checklist
- i-Technology Viewpoint: Attack of the Blogs
- Web 2.0 News and Wrapping Up "Real-World AJAX" Seminar
- AJAX World RIA Interview: Appcelerator Building Out the RIA Open Source Community
- Coach Wei's "Direct From Web 2.0" Blog: The Converging Developer Community
- i-Technology Viewpoint: It's Time to Take the Quotation Marks Off "Web 2.0"
- SOA 2 Point Oh No!
- Sixteen Ways of Thinking in Web 2.0





































