<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: DNS cat is likely out of the bag</title>
	<atom:link href="http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/</link>
	<description></description>
	<lastBuildDate>Thu, 05 Jan 2012 11:44:23 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Room362.com &#187; Blog Archive &#187; iPhone + ATT + DNS = Bad Juju</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-376</link>
		<dc:creator>Room362.com &#187; Blog Archive &#187; iPhone + ATT + DNS = Bad Juju</dc:creator>
		<pubDate>Wed, 04 Mar 2009 19:43:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-376</guid>
		<description>[...] In depth explination: http://www.mcgrewsecurity.com/?p=151 [...]</description>
		<content:encoded><![CDATA[<p>[...] In depth explination: <a href="http://www.mcgrewsecurity.com/?p=151" rel="nofollow">http://www.mcgrewsecurity.com/?p=151</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Patch DNS Anda &#124; Information Security Blogs</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-375</link>
		<dc:creator>Patch DNS Anda &#124; Information Security Blogs</dc:creator>
		<pubDate>Tue, 05 Aug 2008 05:05:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-375</guid>
		<description>[...] traffic jaringan internet secara massal, detail mengenai flaw ini sendiri dapat di refer di McGrew Security selain itu juga anda bisa refer ke personal blog Dan Kaminsky ataupun ke Common Vulnerability and [...]</description>
		<content:encoded><![CDATA[<p>[...] traffic jaringan internet secara massal, detail mengenai flaw ini sendiri dapat di refer di McGrew Security selain itu juga anda bisa refer ke personal blog Dan Kaminsky ataupun ke Common Vulnerability and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: william</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-374</link>
		<dc:creator>william</dc:creator>
		<pubDate>Tue, 22 Jul 2008 21:10:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-374</guid>
		<description>Gotcha!   Thanks!!</description>
		<content:encoded><![CDATA[<p>Gotcha!   Thanks!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Securabyte Episode 1: DNS Haiku &#124; SecuraBit</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-373</link>
		<dc:creator>Securabyte Episode 1: DNS Haiku &#124; SecuraBit</dc:creator>
		<pubDate>Tue, 22 Jul 2008 17:02:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-373</guid>
		<description>[...] In depth explanation of the vulnerability: http://www.mcgrewsecurity.com/?p=151 [...]</description>
		<content:encoded><![CDATA[<p>[...] In depth explanation of the vulnerability: <a href="http://www.mcgrewsecurity.com/?p=151" rel="nofollow">http://www.mcgrewsecurity.com/?p=151</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: admin</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-372</link>
		<dc:creator>admin</dc:creator>
		<pubDate>Tue, 22 Jul 2008 14:55:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-372</guid>
		<description>Hi William!

OpenDNS implements source port randomization, which adds another (roughly) 16 bits of entropy to what an attacker would have to guess to get this working, basically making the attack infeasible.

This is also what the patches that are available for various DNS servers do.</description>
		<content:encoded><![CDATA[<p>Hi William!</p>
<p>OpenDNS implements source port randomization, which adds another (roughly) 16 bits of entropy to what an attacker would have to guess to get this working, basically making the attack infeasible.</p>
<p>This is also what the patches that are available for various DNS servers do.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: william</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-371</link>
		<dc:creator>william</dc:creator>
		<pubDate>Tue, 22 Jul 2008 09:55:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-371</guid>
		<description>Very interesting!

My only question:  how do we know that OpenDNS is safe?

Seems like if you can exploit OpenDNS, you have hit a huge number of computers.</description>
		<content:encoded><![CDATA[<p>Very interesting!</p>
<p>My only question:  how do we know that OpenDNS is safe?</p>
<p>Seems like if you can exploit OpenDNS, you have hit a huge number of computers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security4all</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-370</link>
		<dc:creator>Security4all</dc:creator>
		<pubDate>Mon, 21 Jul 2008 23:42:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-370</guid>
		<description>It got published by error. But it&#039;s already cached in Google reader and God knows how many other bots &amp; readers that tune to their RSS feed.

Matasano has published a public apology:
http://www.matasano.com/log/1105/regarding-the-post-on-chargen-earlier-today/</description>
		<content:encoded><![CDATA[<p>It got published by error. But it&#8217;s already cached in Google reader and God knows how many other bots &amp; readers that tune to their RSS feed.</p>
<p>Matasano has published a public apology:<br />
<a href="http://www.matasano.com/log/1105/regarding-the-post-on-chargen-earlier-today/" rel="nofollow">http://www.matasano.com/log/1105/regarding-the-post-on-chargen-earlier-today/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Network Security Blog &#187; Patch DNS now</title>
		<link>http://www.mcgrewsecurity.com/2008/07/21/dns-cat-is-likely-out-of-the-bag/#comment-369</link>
		<dc:creator>Network Security Blog &#187; Patch DNS now</dc:creator>
		<pubDate>Mon, 21 Jul 2008 23:03:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=151#comment-369</guid>
		<description>[...] don&#8217;t know the details yet, but according to McGrew Security, someone at Matasano let out the details of the DNS vulnerability earlier today. And Dan Kaminsky [...]</description>
		<content:encoded><![CDATA[<p>[...] don&#8217;t know the details yet, but according to McGrew Security, someone at Matasano let out the details of the DNS vulnerability earlier today. And Dan Kaminsky [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

