Go Back   Dreams in Vanadiel - Final Fantasy XI Forum > General Topics > Computers

Post New Thread Reply
 
LinkBack Thread Tools Display Modes
Old 07-29-2008, 09:40 AM   #1
不完全の花
Administrator
Iron Emblem of Service
 
Taskmage's Avatar
 
Join Date: Dec 2003
Posts: 5,457
Style: Light Theme V7

Thanks: 311
Thanked 987x in 495 Posts
Welcome to phishing.co- I mean your bank! yourbank.com!

Apparently, internets are really easy to hax right now.

http://www.npr.org/templates/story/s...oryId=92956413

Quote:
A few months ago, Internet security expert Dan Kaminsky discovered a major problem with the basic wiring of the Internet — one that could easily be exploited by hackers. It has to do with what's known as the domain name system, or DNS.

Kaminsky, who works for the Internet security company IO Active and is a consultant for Microsoft, tells Andrea Seabrook that he stumbled upon the flaw while tinkering with a way to make the Internet faster.

"You want to talk sinking feelings," he says. "This was a bug that was going to take months and month and months of work."

Essentially, the DNS contains a design flaw that could enable hackers to switch the Web site you're directed to when you type a URL into your Web browser. Without your knowledge, you could be transferred to a fake Web site that tries to steal your personal information.

When Kaminsky discovered the problem, he called a secret meeting in March of some of the world's Internet giants — Microsoft, Cisco, Linux — in Redmond, Wash., to come up with a security patch.

Why the big need for secrecy? "We all had something to lose," he says.

To check whether your company or Internet service provider's DNS server has been patched, Kaminsky recommends taking these steps:

Run the DNS server check at DNS Stuff or at Kaminsky's blog.

If the server is vulnerable, Kaminsky suggests e-mailing your ISP or your company's IT department and encouraging them to add a patch. Kaminsky also recommends switching your personal computer to use OpenDNS, a free network service. More information and instructions are available at opendns.com.

"The average consumer shouldn't have to worry about this," he says. "Right now, it's an open question whether the Internet that's being provided is the Internet that's actually what the customer expects."
Taskmage is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 09:42 AM   #2
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,377
Style: Light Theme V7

Thanks: 198
Thanked 603x in 351 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Well good thing they went and told everyone about it, just in case there were a few hackers that didn't know. Wouldn't want them to miss out on an opportunity just in case some DNS servers hadn't been patched yet.
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR / SCH

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 09:48 AM   #3
Dictionary
Allied Ribbon of Bravery
 
Lmnop's Avatar
 
Join Date: Jul 2004
Location: Warrior
Posts: 1,947
Style: Light Theme V7

Thanks: 226
Thanked 354x in 220 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

That's why it was a secret. They wanted it fixed before it got discovered. But a boat this big was sure to develop some leaks on a Titanic scale.
__________________
Quote:
Originally Posted by a Korean forum poster in reference to a kung fu video game trailer
In order for video 2 when comes to be this labor hour height 1 years which listens to go over, with video month should raises and puts and within the feeling no news peeling the horse's nose large spotted butterfly hour heights the awaking tongue are salty the field Oh
^Babelfish hard at work
Lmnop is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 10:02 AM   #4
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,377
Style: Light Theme V7

Thanks: 198
Thanked 603x in 351 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Except they said it might not be all the way fixed for every ISP yet, lol. That's like the Secretary of Defense saying, "We had these huge security holes, and most have been covered up before the terrists found out, but there may still be 3 so see if you can find them!"
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR / SCH

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 04:31 PM   #5
sweet broken hearted machine
Starlight Medal
 
Feba's Avatar
 
Join Date: Oct 2004
Location: Facility A220S-0024, Room 211
Posts: 8,558
Style: Light Theme V7

Thanks: 2,007
Thanked 2,231x in 1,514 Posts
Send a message via AIM to Feba
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Callisto: This is common practice. Find a serious security hole, fix it, and then announce that it's fixed. Security through obscurity rarely works; it wouldn't have lasted long at all in this case.
Feba is online now   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 06:38 PM   #6
不完全の花
Administrator
Iron Emblem of Service
 
Taskmage's Avatar
 
Join Date: Dec 2003
Posts: 5,457
Style: Light Theme V7

Thanks: 311
Thanked 987x in 495 Posts
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

It's not fixed though. About 50% of ISPs are still vulnerable. But they didn't publicly announce it until there was a major leak about the problem anyway, which was inevitable considering how many large companies were involved.
Taskmage is offline   Reply With Quote Button by Aksannyi :)
Old 07-29-2008, 06:57 PM   #7
sweet broken hearted machine
Starlight Medal
 
Feba's Avatar
 
Join Date: Oct 2004
Location: Facility A220S-0024, Room 211
Posts: 8,558
Style: Light Theme V7

Thanks: 2,007
Thanked 2,231x in 1,514 Posts
Send a message via AIM to Feba
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Quote:
Originally Posted by Taskmage View Post
It's not fixed though.
Yes, it is. Whether the fix is implemented or not is irrelevant.

Do you realize how many vulnerabilities are announced every day, which are open doors for crackers if you don't update your system constantly?
Feba is online now   Reply With Quote Button by Aksannyi :)
Old 07-30-2008, 07:18 AM   #8
Now With More Y!
Allied Ribbon of Glory
 
Callisto's Avatar
 
Join Date: Jun 2007
Location: Chicago Suburbs
Posts: 2,377
Style: Light Theme V7

Thanks: 198
Thanked 603x in 351 Posts
My Mood:
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

I'm aware of that, but it's not like 'There was a Flash exploit, update your Flash player!', this is more like 'There was a DNS exploit, hope your ISP has updated!'. That's the part that bugged me.
__________________
Callysto of RamuhCaithsith - 75 RDM / BRD / COR / PLD / WAR / SCH

Formerly Callisto of Ramuh.

RDM Guide( Updated July '09!) | COR Guide | FFXIAH Item Sets & Junk
Callisto is offline   Reply With Quote Button by Aksannyi :)
Old 07-30-2008, 07:33 AM   #9
Senior Veteran
Iron Emblem of Service
 
Mhurron's Avatar
 
Join Date: May 2006
Posts: 5,230
Style: Light Theme V7

Thanks: 145
Thanked 1,896x in 1,096 Posts
Send a message via ICQ to Mhurron Send a message via Yahoo to Mhurron
   
Re: Welcome to phishing.co- I mean your bank! yourbank.com!

Quote:
Originally Posted by Callisto View Post
I'm aware of that, but it's not like 'There was a Flash exploit, update your Flash player!', this is more like 'There was a DNS exploit, hope your ISP has updated!'. That's the part that bugged me.
They were notified in time to patch. This also doesn't just affect ISP's.
Mhurron is offline   Reply With Quote Button by Aksannyi :)
Post New Thread Reply

Tags
bank, phishingco, yourbankcom

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -8. The time now is 10:06 PM.
Site Powered by: vBulletin Version 3.8.1 Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.0 RC2
©2001-2009 SQUARE ENIX CO., LTD. All Rights Reserved. Title Design by Yoshitaka Amano.
FINAL FANTASY and VANA'DIEL are registered trademarks of Square Enix Co., Ltd. SQUARE ENIX, PLAYONLINE and the PlayOnline logo are trademarks of Square Enix Co., Ltd.
Comments and posts are property of their authors. All the rest, including video, articles, compiled game data, and sections, unless otherwise noted, are
©2002-2009 FFXIOnline.com: Dreams in Vana'diel. All rights reserved.

no new posts
Page generated in 0.41036 seconds with 19 queries