I'm sure most of you guys have heard about the Vulnerability in BIND
that exposed by Dan Kaminsky earlier this month. It's a multi-vendor
issue with DNS that could allow attackers to compromise any name server
- clients, too.
Here is a simple way for you to check whether you system is affected or not:
dig +short @Your.DomainNameServer.com porttest.dns-oarc.net TXT
z.y.x.w.v.u.t.s.r.q.p.o.n.m.l.k.j.i.h.g.f.e.d.c.b.a.pt.dns-oarc.net.
"192.168.1.3 is POOR: 26 queries in 20.0 seconds from 1 ports with std dev 0.00"
POOR ----- Definitely indicates that the name-server or system in
question is vulnerable and of course the BIND software running is also
old and needs to be PATCHED AS SOON AS POSSIBLE.


LinkBack URL
About LinkBacks




Reply With Quote
