DNS fragmentation attacks - the dangers of not validating DNSSEC

preview_player
Показать описание
How to prevent DNS fragmentation attacks on your network. DNS cache poisioning attacks can, and have been used, to redirect traffic within networks and are often the first step for larger attacks.
Learn:
- why DNS fragmentation attacks work
- why DNS caching servers that do not do DNSSEC validation are especially vulnerable
- why DNSSEC signed zones can be used to launch this attack
- how IPv6 and/or DNSSEC validation can stop these attacks
Рекомендации по теме