Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


Return to article

Large ISPs Still Vulnerable to DNS Attack
 

According to Neal Krawetz of Hacker Factor, several large ISPs still haven't patched their DNS servers to guard against a critical vulnerability that was made public two weeks ago.

Dan Kaminsky reported the flaw and took special care to ensure that information about the problem was kept quiet until major software vendors could make patches available. Exploits are already on the loose but meanwhile countless Internet users are at risk because their ISPs still haven't installed the available patches or taken steps to secure all their DNS servers through other methods.

According Krawetz's survey of 60 DNS servers, as of July 24 seventeen DNS servers are still vulnerable to attack. The offending ISPs including Comcast, Adelphia, BTInternet, Sprintlink, Bellsouth, Tmnet Streamyx, Xtra, and Wave Broadband.

Kaminsky also offered statistics that he gathered through a DNS vulnerability testing tool available on his website. Anyone can use the tool to test the DNS server currently configured in their TCP/IP settings. As of July 25, Kaminsky reports that the last 5,000 vulnerability tests conducted by the tool reveal that 2,503 are still vulnerable. Many of those vulnerable servers undoubtedly belong to major ISPs.







Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement