DNS presentation on HAR2009

Tagged:  

Bert Hubert (PowerDNS author) made "DNS Security in the Broadest Sense" presentation at HAR2009.
Among other things about current state of the DNS protocol and infrastructure it mentiones my successful hack of the latest to date ISC BIND server with randomized ports by injecting a poisoned DNS record about a year ago.

It took a night and distributed to two attacking nodes which worked against 9.5.0-P2 BIND server and filled a gigabit link almost completely. In a parallel I started the same attack against production DNS server and was shut down by the admins late night. There were lots of fun (and maybe trolling) talks with NOCs and management about the results, not actually about broken DNS, but failed network :)

Code for the distributed attack is still there :)
Without usage example of course.

The actual presentation can be found on
http://bert-hubert.blogspot.com/2009/08/har2009-thoughts-returning-back-... or on http://tinyurl.com/powerdns