/// File Name: |
bailiwicked_domain.rb.txt |
Description:
|
This exploit targets a fairly ubiquitous flaw in DNS implementations which allow the insertion of malicious DNS records into the cache of the target nameserver. This exploit caches a single malicious nameserver entry into the target nameserver which replaces the legitimate nameservers for the target domain. By causing the target nameserver to query for random hostnames at the target domain, the attacker can spoof a response to the target server including an answer for the query, an authority server record, and an additional record for that server, causing target nameserver to insert the additional record into the cache. This insertion completely replaces the original nameserver records for the target domain.
| Author: | I)ruid,H D Moore | Homepage: | http://www.caughq.org/ | File Size: | 15954 | Related CVE(s): | CVE-2008-1447 | Last Modified: | Jul 24 12:14:00 2008 |
MD5 Checksum: | 5882e859718d26d63b3bc1167eacb0fd |
|