DNS attacks on popular websites

September 4, 2011 – 5:03 PM

Keep in mind that today’s DNS hacks of popular websites such as acer.com, ups.com, theregister.co.uk were just that.  A DNS hack.  The actual sites themselves have not been compromised.  For example:

UPS.com was altered to point to ups.com.85621INNSns1.yumurtakabugu.com

The attackers only changed the NS records for the website.  This could have been much worse.

References:
http://isc.sans.edu/diary.html?storyid=11503&rss
http://nakedsecurity.sophos.com/2011/09/04/dns-hack-hits-popular-websites-telegraph-register-ups-etc/

You must be logged in to post a comment.