April 10, 2007 10:31 AM PDT

Windows dynamic DNS update mechanism

by Robert Vamosi
  • Font size
  • Print
Share
The dynamic DNS update mechanism within the DNS Server service in Microsoft Windows does not properly authenticate clients. This occurs with certain configurations, and can allow remote attackers to change DNS records for a web proxy server and conduct man-in-the-middle (MITM) attacks on web traffic. The can also use this flaw to conduct pharming attacks by poisoning DNS records, and cause a denial of service attack.

Additional Resources

MILW0RM: Advisory 3544

As CNET's resident security expert, Robert Vamosi has been interviewed on the BBC, CNN, MSNBC, and other outlets to share his knowledge about the latest online threats and to offer advice on personal and corporate security. Listen to his podcast at securitybites.cnet.com or e-mail Robert with your questions and comments.
Recent posts from Zero Days
Microsoft fixes nineteen flaws in seven patches; all are considered critical updates
Storm Worm strikes again
Windows dynamic DNS update mechanism
Windows Web Proxy Autodiscovery flaw
Windows animated cursor attack
Update for Internet Explorer 7
Integer overflow in Microsoft Internet Explorer 6
Internet Explorer "FolderItem" Object Access Remote Denial of Service Vulnerability
advertisement

About Zero Days

Zero Days are security threats released before or concurrent with the public disclosure of software vulnerabilities. Our new blog will keep you ahead of the criminal hackers by informing you what you are up against.

Add this feed to your online news reader

Zero Days topics