Go Back   Dreams in Vanadiel - Final Fantasy XI Forum > General Topics > Computers

Post New Thread Reply
 
LinkBack Thread Tools Display Modes
Old 07-29-2008, 08:40 AM   #1
不完全の花
Administrator
Iron Emblem of Service
 
Taskmage's Avatar
 
Join Date: Dec 2003
Posts: 5,401
Style: Light Theme V7

Thanks: 295
Thanked 939x in 466 Posts
Welcome to phishing.co- I mean your bank! yourbank.com!

Apparently, internets are really easy to hax right now.

http://www.npr.org/templates/story/s...oryId=92956413

Quote:
A few months ago, Internet security expert Dan Kaminsky discovered a major problem with the basic wiring of the Internet — one that could easily be exploited by hackers. It has to do with what's known as the domain name system, or DNS.

Kaminsky, who works for the Internet security company IO Active and is a consultant for Microsoft, tells Andrea Seabrook that he stumbled upon the flaw while tinkering with a way to make the Internet faster.

"You want to talk sinking feelings," he says. "This was a bug that was going to take months and month and months of work."

Essentially, the DNS contains a design flaw that could enable hackers to switch the Web site you're directed to when you type a URL into your Web browser. Without your knowledge, you could be transferred to a fake Web site that tries to steal your personal information.

When Kaminsky discovered the problem, he called a secret meeting in March of some of the world's Internet giants — Microsoft, Cisco, Linux — in Redmond, Wash., to come up with a security patch.

Why the big need for secrecy? "We all had something to lose," he says.

To check whether your company or Internet service provider's DNS server has been patched, Kaminsky recommends taking these steps:

Run the DNS server check at DNS Stuff or at Kaminsky's blog.

If the server is vulnerable, Kaminsky suggests e-mailing your ISP or your company's IT department and encouraging them to add a patch. Kaminsky also recommends switching your personal computer to use OpenDNS, a free network service. More information and instructions are available at opendns.com.

"The average consumer shouldn't have to worry about this," he says. "Right now, it's an open question whether the Internet that's being provided is the Internet that's actually what the customer expects."
Taskmage is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 08:42 AM   #2
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,285
Style: Light Theme V7

Thanks: 193
Thanked 572x in 334 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Well good thing they went and told everyone about it, just in case there were a few hackers that didn't know. Wouldn't want them to miss out on an opportunity just in case some DNS servers hadn't been patched yet.
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 08:48 AM   #3
Dictionary
Allied Ribbon of Bravery
 
Lmnop's Avatar
 
Join Date: Jul 2004
Location: Warrior
Posts: 1,748
Style: Light Theme V7

Thanks: 166
Thanked 295x in 178 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

That's why it was a secret. They wanted it fixed before it got discovered. But a boat this big was sure to develop some leaks on a Titanic scale.
__________________
Armando J Doval: I love myself so much.
Lmnop is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 09:02 AM   #4
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,285
Style: Light Theme V7

Thanks: 193
Thanked 572x in 334 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Except they said it might not be all the way fixed for every ISP yet, lol. That's like the Secretary of Defense saying, "We had these huge security holes, and most have been covered up before the terrists found out, but there may still be 3 so see if you can find them!"
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 03:31 PM   #5
Feba
Wings of Honor
 
Feba's Avatar
 
Join Date: Oct 2004
Location: Feba
Posts: 8,101
Style: Light Theme V7

Thanks: 1,914
Thanked 1,966x in 1,356 Posts
Send a message via AIM to Feba
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Callisto: This is common practice. Find a serious security hole, fix it, and then announce that it's fixed. Security through obscurity rarely works; it wouldn't have lasted long at all in this case.
__________________
Feba is online now   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 05:38 PM   #6
不完全の花
Administrator
Iron Emblem of Service
 
Taskmage's Avatar
 
Join Date: Dec 2003
Posts: 5,401
Style: Light Theme V7

Thanks: 295
Thanked 939x in 466 Posts
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

It's not fixed though. About 50% of ISPs are still vulnerable. But they didn't publicly announce it until there was a major leak about the problem anyway, which was inevitable considering how many large companies were involved.
Taskmage is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 05:57 PM   #7
Feba
Wings of Honor
 
Feba's Avatar
 
Join Date: Oct 2004
Location: Feba
Posts: 8,101
Style: Light Theme V7

Thanks: 1,914
Thanked 1,966x in 1,356 Posts
Send a message via AIM to Feba
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Quote:
Originally Posted by Taskmage View Post
It's not fixed though.
Yes, it is. Whether the fix is implemented or not is irrelevant.

Do you realize how many vulnerabilities are announced every day, which are open doors for crackers if you don't update your system constantly?
__________________
Feba is online now   Reply With Quote Button by Aksannyi :)
Old 07-30-2008, 06:18 AM   #8
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,285
Style: Light Theme V7

Thanks: 193
Thanked 572x in 334 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

I'm aware of that, but it's not like 'There was a Flash exploit, update your Flash player!', this is more like 'There was a DNS exploit, hope your ISP has updated!'. That's the part that bugged me.
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-30-2008, 06:33 AM   #9
Senior Veteran
Iron Emblem of Service
 
Mhurron's Avatar
 
Join Date: May 2006
Posts: 5,118
Style: Light Theme V7

Thanks: 138
Thanked 1,759x in 1,037 Posts
Send a message via ICQ to Mhurron
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Quote:
Originally Posted by Callisto View Post
I'm aware of that, but it's not like 'There was a Flash exploit, update your Flash player!', this is more like 'There was a DNS exploit, hope your ISP has updated!'. That's the part that bugged me.
They were notified in time to patch. This also doesn't just affect ISP's.
__________________
I use a Mac because I'm just better than you are.
Paragon of Red Mage Excellence
Paragon of Black Mage Excellence

Maat Masher - RDM
Shining Ray of Awesome

HTTP Error 418 - I'm A Teapot - The resulting entity body MAY be short and stout.
Mhurron is offline   Reply With Quote Button by Aksannyi :)
Post New Thread Reply

Tags
bank, phishingco, yourbankcom

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -8. The time now is 04:27 PM.
Site Powered by: vBulletin Version 3.8.1 Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.0 RC2
©2001-2009 SQUARE ENIX CO., LTD. All Rights Reserved. Title Design by Yoshitaka Amano.
FINAL FANTASY and VANA'DIEL are registered trademarks of Square Enix Co., Ltd. SQUARE ENIX, PLAYONLINE and the PlayOnline logo are trademarks of Square Enix Co., Ltd.
Comments and posts are property of their authors. All the rest, including video, articles, compiled game data, and sections, unless otherwise noted, are
©2002-2009 FFXIOnline.com: Dreams in Vana'diel. All rights reserved.

no new posts
Page generated in 0.66861 seconds with 19 queries