Comments on: DNS exploit code is in the wild
The urgency to patch clients and servers rises to a fever pitch as code to attack the Internet is released. Two Black Hat presenters had conflicted over the timing of the code release.
The urgency to patch clients and servers rises to a fever pitch as code to attack the Internet is released. Two Black Hat presenters had conflicted over the timing of the code release.
Web sites launch all the time, but they also shut their doors. We highlight 15 that bit the dust this year.
Let the debate begin: Was the iPhone more important than iTunes? Was anything bigger than Google finding a great business model? CNET offers its list of the 10 most important stories of the '00s.
Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.
Add this feed to your online news reader
Where does this leave HD Moore on the world stage as responsible security researcher? Oh wait, he isn't one and never was a responsible security researcher.
Metasploit frame work is used primarily by the bad guys, so we can see what HD Moore's intentions are.
In other news, why isn't HD Moore in jail yet?
Re: n3td3v: I don't know that I agree with your statement or with HD Moore's behavior overall, but Moore released practical exploitation code only after Matasano Chargen posted a blog entry that explained the attack with great specificity. Moore is doing a service by allowing penetration/vulnerability testing with a common tool now that the knowledge is in the hands of black hats.
Re: Seaspray0: Great suggestion. Also, DNSSEC is finally moving forward, which would allow signing of information among DNS servers, and thus defeat any known poisoning attack.
To me HD Moore is a black hat though who is just using a loop hole in the law to make the Metasploit frame work and to distribute exploit code to the other bad guys.
If Metasploit was a legitimate attack platform, it would only be available to companies with credentials who can prove who they are and that they have permission and legitimate reason to use Metasploit for the small amount of folks who use Metasploit for legal above board reasons.
With Metasploit, anyone can walk off the street and download it and thats got to be a bad thing, but im not entirely sure that HD Moore cares about the bad guys using Metasploit, as long as he is known as an elite hacker and is worshipped like a god.
Nearly every network tool that is used legitimately has illegitimate uses also. With your logic wireshark, nessus, dsniff, nikto, hydra, nmap, ettercap,netstumbler. kismet, various fuzzers, etc should all be banned and its authors jailed. Don't stop there, we should ban network and programming security courses from CS depeartments and jail all of us who can write tools that can be used for evil.
- by pmbx July 27, 2008 6:53 AM PDT
- I'm tired of 'black hat experts' just looking for exploits to gain notoriety. I'm ready for the first lawsuits against Kaminsky for real damages that occurred because of his irresponsibility. He put his own self-interests first in order to be the one to blast this dns deficiency on the stage. It all about the bucks he'd get from his 'expertise.' All these security 'experts' are probably the same. Why isn't there legislation to make this kind of action worthy of jail time!
- Like this Reply to this comment
-
(10 Comments)