<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Bad Penny &#187; 0day</title>
	<atom:link href="http://gorrie.org/tag/0day/feed/" rel="self" type="application/rss+xml" />
	<link>http://gorrie.org</link>
	<description>bound to turn up.  The adventures of an early adopter.</description>
	<lastBuildDate>Tue, 22 Jun 2010 05:37:27 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>The DNS Drama</title>
		<link>http://gorrie.org/2008/07/23/the-dns-drama/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=the-dns-drama</link>
		<comments>http://gorrie.org/2008/07/23/the-dns-drama/#comments</comments>
		<pubDate>Wed, 23 Jul 2008 09:03:31 +0000</pubDate>
		<dc:creator>Ian Gorrie</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[0day]]></category>
		<category><![CDATA[blackops-of-lol]]></category>
		<category><![CDATA[dns]]></category>

		<guid isPermaLink="false">http://gorrie.org/2008/07/23/the-dns-drama/</guid>
		<description><![CDATA[<p>Dan&#8217;s Seattle Toorcon 0day keeps going and going and going and going.</p>
<p>If you&#8217;re looking for details, the details that were leaked, confirmed, retracted, and denied, here&#8217;s a description and a mirror.</p>
<p>So if you run your own DNS, upgrade already as you should have some time ago when you were first told to do so.</p>
<p>Perhaps I will [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.doxpara.com/">Dan&#8217;s</a> <a href="http://seattle.toorcon.org/">Seattle Toorcon</a> <a href="http://blogs.zdnet.com/security/?p=1040">0day</a> keeps <a href="http://blog.wired.com/27bstroke6/2008/07/details-of-dns.html">going</a> and <a href="http://blog.invisibledenizen.org/2008/07/kaminskys-dns-issue-accidentally-leaked.html">going</a> and <a href="http://news.cnet.com/8301-1009_3-9996316-83.html">going</a> and <a href="http://www.securityfocus.com/brief/779">going</a>.</p>
<p>If you&#8217;re looking for details, the details that were leaked, confirmed, retracted, and denied, <a href="http://beezari.livejournal.com/141796.html">here&#8217;s a description</a> and <a href="http://thefrozenfire.com/data/dnspoisoning.html">a mirror</a>.</p>
<p>So if you run your own DNS, upgrade already as you should have <a href="http://it.slashdot.org/article.pl?sid=08/07/08/195225&amp;tid=172">some time ago</a> when you were first <a href="http://tech.slashdot.org/tech/08/07/15/0032227.shtml">told to do so</a>.</p>
<p><strike>Perhaps I will switch to <a href="http://www.opendns.com/">OpenDNS</a> after all.</strike> In fact, I should have done this a while ago on most of the nets I deal with routinely.</p>
<p>The commentary in <a href="http://www.doxpara.com/?p=1176#comments">this posting</a> is rather interesting as well. If you don&#8217;t trust OpenDNS, and I can&#8217;t say that I blame you, a comment poses a worthy option:</p>
<ol>
<li>I run a local dns server that randomizes source ports whose network facing NAT does not derandomize source ports.</li>
<li>My local server resolves through the root servers. The queries are sent to a random root.</li>
<li>I limit my dns server to strictly use TCP queries and not to use UDP for queries.</li>
</ol>
<p><strong>Update:</strong></p>
<p>Metasploit code now <a href="http://blogs.zdnet.com/security/?p=1546">jupes entire domains</a>.</p>
<img src="http://gorrie.org/blog/wp-content/plugins/pixelstats/trackingpixel.php?post_id=311&amp;ts=1284135689" style="display:none;" alt="pixelstats trackingpixel"/>

<p>Related posts:<ol><li><a href='http://gorrie.org/2009/06/05/gogo-wireless/' rel='bookmark' title='Permanent Link: Bored on a plane: Gogo wireless on Virgin America'>Bored on a plane: Gogo wireless on Virgin America</a></li>
<li><a href='http://gorrie.org/2007/12/19/politics-in-system-security/' rel='bookmark' title='Permanent Link: Politics in system security'>Politics in system security</a></li>
<li><a href='http://gorrie.org/2007/08/30/more-wifi-more-problems/' rel='bookmark' title='Permanent Link: More wifi, more problems'>More wifi, more problems</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://gorrie.org/2008/07/23/the-dns-drama/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
<!-- This Quick Cache file was built for (  gorrie.org/tag/0day/feed/ ) in 0.49973 seconds, on Sep 10th, 2010 at 4:21 pm UTC. -->
<!-- This Quick Cache file will automatically expire ( and be re-built automatically ) on Sep 10th, 2010 at 5:21 pm UTC -->