nanog mailing list archives

Re: new DNS forwarder vulnerability


From: Nick Hilliard <nick () foobar org>
Date: Fri, 14 Mar 2014 13:59:27 +0000

On 14/03/2014 13:45, Mark Allman wrote:
  - We have found 7--9% of the open resolver population---or 2-3 million
    boxes---to be vulnerable to this cache poisoning attack.  (The
    variance is from different runs of our experiments.)

did you characterise what dns servers / embedded kit were vulnerable?  If
so, can you share the results?

Nick



Current thread: