Critical DNS flaw, care your transactions

It doesn’t matter how secure they say your internet transactions are with them such as banks and e-commerce sites you could have lost each and every penny in your bank accounts to so called hackers through your internet transaction. Would you refrain from internet transactions or just go on regardless. So beware of some security issues and make sure to follow the security patches provided by your respective vendors to stay atop with daily or monthly updates.

This flaw within Domain Name System is really critical and the specifics of which is not disclosed until the vendors update their DNS servers. CNET News have quoted it as

The flaw that Kaminsky discovered could allow criminal hackers to guess the transaction ID of any request to a DNS server for a particular domain, such as one used for a bank or an e-commerce site, and then re-direct that request to another site, a phishing site. It would do so silently, evading most anti-phishing technology because the change would be made not at the desktop level but at the DNS server itself. – CNET

Perhaps due to the deadliness of the exploit, the security researcher, Dan Kaminsky who discovered this DNS flaw hasn’t mentioned much about the nature of this flaw yet; however with some really remarkable manner he made some convincing meetings with the vendors such as Microsoft, Cisco, and others making them to release their simultaneous patches to address this flaw.

Yes, the desktops cant do a thing but your DNS servers might betray you if you are to lag behind. Just follow your Microsoft, Cisco, and other vendor’s patches.

Read it on here and here


About this entry