Skip Links

Network World

Jim Duffy

Despite patch by Cisco, Microsoft, others, DNS is not secure, researcher says

By Cisco Subnet on Thu, 02/19/09 - 7:30pm.
Newsletter Signup

The Kaminsky Bug, a DNS cache poisoning attack, remains a threat, despite the fact that vendors such as Cisco, Sun and Microsoft joined together to release patches that temporarily fix the flaw. So said Dan Kaminsky at the Black Hat conference, reports Network World. The prominent security researcher told attendees that holes in DNS make the Internet vulnerable. DNS's problems are limiting other important, dependent security technologies as well.

He advocates DNS Security Extensions, which attempt to prevent spoofing attacks by allowing Web sites to verify their domain names and corresponding IP addresses using digital signatures and public-key encryption.

The article says:

"One roadblock to DNSSEC adoption is that it isn't easy to implement, Kaminsky admits, and calls for coordination by many parties. DNSSEC requires domain name registrars, domain name registries, ISPs and users to upgrade their software."

More from Cisco Subnet:

* Vyatta beats out Cisco, Juniper for New Mexico win
* Details of "Project California" revealed
* Largest coordinated ATM Rip-off ever nets $9+ million in 30 minutes
Cisco adds new online questions module to CCIE lab exam
Cisco in the home: Anonymous or poised for domination?
* OSPF puzzle: Analyzing OSPF metrics, human style
Getting Started with the CCNA Wireless
Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, training/book giveaways, and more. 

Post new comment

The content of this field is kept private and will not be shown publicly.
  • You can use BBCode tags in the text.
  • Lines and paragraphs break automatically.
  • Allowed HTML tags: <p> <strong> <i> <br /> <br> <ul> <ol> <li> <dl> <dt> <dd> <blockquote>

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
Welcome, visitor. Register Log in
About Cisco Subnet Blog

The Cisco Subnet blog is written by Network World managing editor Jim Duffy and is the official blog of Network World's Cisco Subnet community. The Cisco Subnet site is managed by Online Community Editor Julie Bort. Cisco Subnet is the independent voice of Cisco customers and is your gateway to daily Cisco news, blogs, opinion, books, prize giveaways and more. Visit the Cisco Subnet home page daily and while you are there, subscribe to the Cisco Alert e-mail newsletter, which includes news and views generated by the Cisco Subnet community as well as Cisco-related stories on Network World and elsewhere on the Web.