Re: [Full-Disclosure] Verisign abusing .COM/.NET monopoly, BIND releases new

From: Michael Renzmann (security_at_dylanic.de)
Date: 09/17/03

  • Next message: Florian Weimer: "Re: [Full-Disclosure] EXPLOIT : RPC DCOM (MS03-039)"
    To: Brian Hatch <full-disclosure@ifokr.org>
    Date: Wed, 17 Sep 2003 09:13:52 +0200
    
    

    Hi Brian.

    Brian Hatch wrote:
    > Is it always returning the same IP address,

    Yeah, seams like that. For example, the (I think) non-existant
    dulladulladulla.net resolves to 64.94.110.11, as well as
    bollabollabolla.net or verisignsucks.net. So blocking any DNS reply
    containing this IP could be a way to prevent that Verisign "commercial
    break".

    Did anyone else notice that the host behind this IP seems to be down? No
    ping reply, no answer to http-requests. No, wait: port 25 seems to be
    open (so there is a machine behind that IP). But no http, so no (more)
    commercial from that host.

    Bye, Mike

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Florian Weimer: "Re: [Full-Disclosure] EXPLOIT : RPC DCOM (MS03-039)"

    Relevant Pages

    • Re: Issue resolving local domain on same server
      ... the "domain xyz.com" entry should be different from the host being looked ... nameserver 1.2.3.4 ... which resolves to 5.5.5.5 for testing purposes. ... thus it is not seeing the local server first. ...
      (comp.unix.bsd.freebsd.misc)
    • Why is one site faster?
      ... I'm moving a website from one host to the other ... The site uses Linux, Apache2, and MySQL 4.1, and phpBB. ... The new machine's disk is raid 5 with everything on /, ... Could the fact that one resolves, and is addressed by DNS-name make it ...
      (comp.infosystems.www.servers.unix)
    • Re: X11 display forwarding
      ... the usual problem when upgrading involving ForwardX11Trusted. ... (as opposed to pointing $DISPLAY at the firewall and munging xauth ... On which host should I change to "yes"? ... it resolves to the VPN ...
      (comp.security.ssh)
    • Re: Avoid using DNS for hostname name resolution in ldap_bind_s
      ... If the host name is correctly entered in a host file, ... before the client attempts to query DNS. ... How ping resolves the server name is how LDAP resolvs it. ...
      (microsoft.public.windows.server.active_directory)
    • Re: X11 display forwarding
      ... the usual problem when upgrading involving ForwardX11Trusted. ... On which host should I change to "yes"? ... the firewall's hostname resolves to two or more IP addresses? ... The firewall is my VPN host. ...
      (comp.security.ssh)