http://www.informationweek.com/news/...leID=209901566
Given that there are reports of people spoofing major banks in the wild already. Might be time to boot into Ubunto/Vista for important surfing...."Apple might have fixed some of the more important parts for servers, but is far from done yet as all the clients linked against a DNS client library still need to get the workaround for the protocol weakness," Frantzen said in a blog post.
The issue appears to be that despite Apple's patch, BIND under OS X is incrementing the ports it uses to communicate DNS information in a predictable pattern.


LinkBack URL
About LinkBacks
Reply With Quote