<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Dan Kaminsky Disqualified from Most Overhyped Bug Pwnie</title>
	<atom:link href="http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/feed/" rel="self" type="application/rss+xml" />
	<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/</link>
	<description>4888 C3C4 099A 4240 9648  719B 84E0 A6FE 32AE 38F6</description>
	<lastBuildDate>Mon, 02 May 2011 23:50:01 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Zero Day mobile edition</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-105</link>
		<dc:creator><![CDATA[Zero Day mobile edition]]></dc:creator>
		<pubDate>Tue, 22 Jul 2008 14:09:54 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-105</guid>
		<description><![CDATA[[...] Thomas Ptacek (right), principal of Matasano Security, was the first to call BS on the secrecy.   Kaminsky immediately arranged a private conference call to spill the beans.   Dino Dai Zovi, another researcher with hacker cred, was included.   After the call, both Ptacek and Dai Zovi confirmed this was something super-serious that required immediate attention. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Thomas Ptacek (right), principal of Matasano Security, was the first to call BS on the secrecy.   Kaminsky immediately arranged a private conference call to spill the beans.   Dino Dai Zovi, another researcher with hacker cred, was included.   After the call, both Ptacek and Dai Zovi confirmed this was something super-serious that required immediate attention. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lynn Taylor</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-99</link>
		<dc:creator><![CDATA[Lynn Taylor]]></dc:creator>
		<pubDate>Tue, 15 Jul 2008 00:18:40 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-99</guid>
		<description><![CDATA[Dan: thanks for your help.]]></description>
		<content:encoded><![CDATA[<p>Dan: thanks for your help.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lynn Taylor</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-98</link>
		<dc:creator><![CDATA[Lynn Taylor]]></dc:creator>
		<pubDate>Mon, 14 Jul 2008 23:17:17 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-98</guid>
		<description><![CDATA[Dan,

I&#039;ve posted two comments at DoxPara.com, those comments are marked &quot;waiting moderation&quot; -- and the E-Mail address is valid.

I promise to take the minimum amount of time.

Thanks -- Lynn]]></description>
		<content:encoded><![CDATA[<p>Dan,</p>
<p>I&#8217;ve posted two comments at DoxPara.com, those comments are marked &#8220;waiting moderation&#8221; &#8212; and the E-Mail address is valid.</p>
<p>I promise to take the minimum amount of time.</p>
<p>Thanks &#8212; Lynn</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JohnJones</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-97</link>
		<dc:creator><![CDATA[JohnJones]]></dc:creator>
		<pubDate>Mon, 14 Jul 2008 21:20:24 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-97</guid>
		<description><![CDATA[thanks I know randomness is hard (-;

regards

John Jones
http://www.johnjones.me.uk]]></description>
		<content:encoded><![CDATA[<p>thanks I know randomness is hard (-;</p>
<p>regards</p>
<p>John Jones<br />
<a href="http://www.johnjones.me.uk" rel="nofollow">http://www.johnjones.me.uk</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Kaminsky</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-96</link>
		<dc:creator><![CDATA[Dan Kaminsky]]></dc:creator>
		<pubDate>Mon, 14 Jul 2008 18:16:25 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-96</guid>
		<description><![CDATA[Tell me about the name server you&#039;re coding against, and contact  me privately.]]></description>
		<content:encoded><![CDATA[<p>Tell me about the name server you&#8217;re coding against, and contact  me privately.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ma petite parcelle d'Internet...</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-94</link>
		<dc:creator><![CDATA[Ma petite parcelle d'Internet...]]></dc:creator>
		<pubDate>Sat, 12 Jul 2008 08:57:18 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-94</guid>
		<description><![CDATA[&lt;strong&gt;DNS, DNS, DNS......&lt;/strong&gt;

Germaine, sort le deux-coups, le riz, les boites de cassoulet, les bouteilles d&#039;eau et les sacs de sable, l&#039;Internet mondial est en train de sombrer. À pic. Façon Titanic. Et oui chers lecteurs, DNS vient de prendre un coup de douze. Un autre.......]]></description>
		<content:encoded><![CDATA[<p><strong>DNS, DNS, DNS&#8230;&#8230;</strong></p>
<p>Germaine, sort le deux-coups, le riz, les boites de cassoulet, les bouteilles d&#8217;eau et les sacs de sable, l&#8217;Internet mondial est en train de sombrer. À pic. Façon Titanic. Et oui chers lecteurs, DNS vient de prendre un coup de douze. Un autre&#8230;&#8230;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lynn Taylor</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-93</link>
		<dc:creator><![CDATA[Lynn Taylor]]></dc:creator>
		<pubDate>Fri, 11 Jul 2008 19:38:29 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-93</guid>
		<description><![CDATA[As someone who was not part of the discussion in the DNS community, but still has to maintain (i.e. write code) for a DNS server, I&#039;d still like to know what I&#039;m coding against.

I understand (and respect) what Dan has done, but it was hard to find the details of the patch among all of the discussion.

I hope I&#039;ve interpreted it correctly.

... and I hope I got it right.]]></description>
		<content:encoded><![CDATA[<p>As someone who was not part of the discussion in the DNS community, but still has to maintain (i.e. write code) for a DNS server, I&#8217;d still like to know what I&#8217;m coding against.</p>
<p>I understand (and respect) what Dan has done, but it was hard to find the details of the patch among all of the discussion.</p>
<p>I hope I&#8217;ve interpreted it correctly.</p>
<p>&#8230; and I hope I got it right.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Consensus? : DoxPara Research</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-92</link>
		<dc:creator><![CDATA[Consensus? : DoxPara Research]]></dc:creator>
		<pubDate>Fri, 11 Jul 2008 07:51:01 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-92</guid>
		<description><![CDATA[[...] It went well. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] It went well. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SecurityBob</title>
		<link>http://trailofbits.com/2008/07/09/dan-kaminsky-disqualified-from-most-overhyped-bug-pwnie/#comment-91</link>
		<dc:creator><![CDATA[SecurityBob]]></dc:creator>
		<pubDate>Thu, 10 Jul 2008 18:30:31 +0000</pubDate>
		<guid isPermaLink="false">http://trailofbits.wordpress.com/?p=35#comment-91</guid>
		<description><![CDATA[Let&#039;s make the world believe that www.google.com is 127.0.0.1 :

Step 1:

- Create a malicious DNS zone (malicious.com)

- Spread links to www.malicious.com all over the internet (spam, etc...)

Step 2:

- Victim clicks on the the link to www.malicious.com

- Victim&#039;s DNS resolver (ns.victim.com) talks to ns.malicious.com

- ns.malicious.com answers by saying that &quot;www.malicious.com&quot; really is an alias for &quot;www.google.com&quot;

=&gt; At this point, I, as an attacker, knows that ns.victim.com is going to ask ns.google.com what is the IP of &quot;www.google.com&quot;

=&gt; ns.victim.com is using either a fixed or a non-random UDP source port for its queries

=&gt; So I can flood ns.victim.com (posing as ns.google.com) with tons of fake DNS answers claiming that www.google.com is 127.0.0.1. All I have to figure out at this point is the XID that will be used, and given that it&#039;s a 16 bits integer, it&#039;s not the most complex thing of the world.

=&gt; ns.malicious.com now believes that www.google.com is 127.0.0.1]]></description>
		<content:encoded><![CDATA[<p>Let&#8217;s make the world believe that <a href="http://www.google.com" rel="nofollow">http://www.google.com</a> is 127.0.0.1 :</p>
<p>Step 1:</p>
<p>- Create a malicious DNS zone (malicious.com)</p>
<p>- Spread links to <a href="http://www.malicious.com" rel="nofollow">http://www.malicious.com</a> all over the internet (spam, etc&#8230;)</p>
<p>Step 2:</p>
<p>- Victim clicks on the the link to <a href="http://www.malicious.com" rel="nofollow">http://www.malicious.com</a></p>
<p>- Victim&#8217;s DNS resolver (ns.victim.com) talks to ns.malicious.com</p>
<p>- ns.malicious.com answers by saying that &#8220;www.malicious.com&#8221; really is an alias for &#8220;www.google.com&#8221;</p>
<p>=&gt; At this point, I, as an attacker, knows that ns.victim.com is going to ask ns.google.com what is the IP of &#8220;www.google.com&#8221;</p>
<p>=&gt; ns.victim.com is using either a fixed or a non-random UDP source port for its queries</p>
<p>=&gt; So I can flood ns.victim.com (posing as ns.google.com) with tons of fake DNS answers claiming that <a href="http://www.google.com" rel="nofollow">http://www.google.com</a> is 127.0.0.1. All I have to figure out at this point is the XID that will be used, and given that it&#8217;s a 16 bits integer, it&#8217;s not the most complex thing of the world.</p>
<p>=&gt; ns.malicious.com now believes that <a href="http://www.google.com" rel="nofollow">http://www.google.com</a> is 127.0.0.1</p>
]]></content:encoded>
	</item>
</channel>
</rss>

