[nsp-sec] Phishing

Rodney Joffe rjoffe at centergate.com
Sat Apr 19 20:07:22 EDT 2008


I'm not sure if this belongs rather on -d... but in the interim, I  
think that most of you will want to look at this presentation that Dan  
Kaminsky presented a couple of hours ago. He has indicated that he  
intends to publish it far and wide. Not new (XSS scripting, but with a  
new twist based on the new ISP/DNS model of NXDOMAIN and wildcard  
redirection for advertising.

http://www.doxpara.com/DMK_Neut_toor.ppt

I have his paper, but it does not appear to have been published yet.  
If it shows up publicly, I'll provide a link. It has an "interesting"  
tone - pure Kaminsky attitude.




More information about the nsp-security mailing list