DNS wackiness
2006-10-31 19:37:11.955549+00 by Dan Lyke 2 comments
I had recently had some discussions on security, and had come to the conclusion that social engineering a Certificate Authority was easier than corrupting DNS. I'm not sure I'm wrong, but Johannes Ernst points out that something's wacky about MySpace DNS right now. Interestingly, doing a "whois" and going straight to their domain servers only has the loopback missing, so the exploit (if this involves an exploit) is about something listening on a compromised machine.