
This weekend saw a host of attacks aimed at pharming users to false websites. Pharming utilizes various host and/or DNS technique attacks to lure users from vaild websites to falsified ones. The intent is to trick users into entering credit card numbers, social security numbers, or other valuable financial markers. The attack this weekend centered on weather.com, google, and ebay. The exploit centered on a known DNS poisoning vulnerability in some of Symantec’s firewall products.
These activities seem to underscore the vulnerability of current DNS and BIND implementations. …This doesn’t even take into account the unsecure nature of the tcp/ip protocol. This year will inevitably feature some higher profile schemes. Move over phishing, your big brother, pharming, is moving in.
If you would like to make a comment, please fill out the form below.
Recent Comments