Most Popular Stories
- U.S. military bans USB flash drives and removable media
- Analyst: Apple will launch netbook competitor in response to slowdown
- Report claims that Google is snipping 10,000 jobs
- CMS Watch says enterprise search vendors are opening up
- Netbooks eat into Microsoft's revenues
- Using text messages to remotely disable Lenovo ThinkPads
Events
- Gilbane Conference Boston
December 2-4, 2008 — Westin Copley Place, Boston MA
Sponsored Links
Latest News
Popular Topics
Whitepapers
- Service Oriented Architecture
- IM and Presence: Achieving Mission Critical Status in the Enterprise
- HIPAA Security Provisions
- The Case for an Untethered Enterprise
- How Social Computing, Team Collaboration, and Enterprise Content Management Drive Competitive Advantage
- The Definitive IP Address Management (IPAM) Intelligence Whitepaper
Patch needed for web security
Dan Kaminsky, a director at IOActive, believes there are some major flaws on the Internet that need to be fixed to stop hackers from diverting users to fake websites where personal and financial information can be stolen. Kaminsky intends to layout details at a security conference in Las Vegas next week.
The New York Times reports that Kaminsky has discovered a problem with the Domain Name System, a kind of automated phone book that converts human-friendly addresses like google.com into machine-friendly numeric counterparts.
The newspaper said the flaw in this system can easily allow criminals to redirect web traffic to an impostor site set up to steal the user's name and password. Some major Internet service providers, such as Comcast and Verizon, said that a software patch is already in place, and At&T said it is working on the problem. But the issue is global, and many users are still vulnerable.
For more on this threat:
- see the New York Times article
Related Stories
- Survey: One in four DNS servers still vulnerable to Kaminsky hack
- Comcast P4P trial shows an 80 percent boost for peer-to-peer downloads
- 'Cloud-based' zombies available for as little as $299 per month
- Giant scale DDoS tops 40 Gbps
- AT&T Web site hacked
- IBM to offer enterprise services around cloud computing
- Unpatched web browsers a security threat
- Fundamental flaw in DNS protocol discovered
- Google's JotSpot exposes user data
- 'Joe the Plumber' gets hacked
Comments
Post new comment
Home
| Subscribe | Advertise | RSS |
Privacy
| Site MapTHE FIERCEMARKETS NETWORKFierceFinance | FierceFinanceIT | FierceSarbox | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceBiotech | FierceBioResearcher | FiercePharma | FierceVaccines | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceVoIP | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe© 2008 FierceMarkets, Inc. All rights reserved. |
![]() |





