Visit Jonathan D. Miller's column >>

JONATHAN D. MILLERHome Page

"I will protest the sword if it's not wielded well"
Add To Watchlist
Articles Posted: 7; Links Seeded: 96
Member Since: 7/2006

How One Man Nearly Destroyed the Internet

advertisement

On a drizzly Sunday afternoon, he flopped down on his bed, flipped open his laptop, and started playing games with DNS. He used a software program called Scapy to fire random queries at the system. He liked to see how it would respond and decided to ask for the location of a series of nonexistent Web pages at a Fortune 500 company. Then he tried to trick his DNS server in San Diego into thinking that he knew the location of the bogus pages.
Suddenly it worked. The server accepted one of the fake pages as real. But so what? He could now supply fake information for a page nobody would ever visit. Then he realized that the server was willing to accept more information from him. Since he had supplied data about one of the company's Web pages, it believed that he was an authoritative source for general information about the company's domain. The server didn't know that the Web page didn't exist—it was listening to Kaminsky now, as if it had been hypnotized.

Published to:

What's this?
Who's leading the conversation?
This visualization below allows you to see the impact that each user has on the current conversation. The top row contains the group of users who have had the most impact, the 2nd row the group of users who have had the 2nd most impact (et cetera). Users with similar impact are grouped together, and the average score of the group is shown to the left of the group. The author of the article is also shown on the left, in their corresponding group. Each user's score is based on the number of comments the user has made plus the number of votes their comments have received. The scores are calculated relative one another, so while their absolute value is not particularly important, their relative difference does indicate a larger difference in impact on the conversation.
6.1
{"commentId":4261086,"authorDomain":"onlineapps"}

Lesson here: Don't let geeks exercise. Especially sprints.

{"commentId":4261086,"threadId":"432742","contentId":"2168534","authorDomain":"onlineapps"}
  • 3 votes
Reply#1 - Tue Dec 2, 2008 2:19 PM EST
{"commentId":4261777,"authorDomain":"jdmiller82"}

I try to put myself in his position, that of discovering such a flaw. Personally I would have been tempted to shut down the whole internet. Then my name would live in infamy!

Or better yet I'd write a program that would randomly redirect websites, so you think you are going to google, but end up on craigslist. Now that would be fun!

{"commentId":4261777,"threadId":"432742","contentId":"2168534","authorDomain":"jdmiller82"}
  • 3 votes
#1.1 - Tue Dec 2, 2008 3:02 PM EST
{"commentId":4274976,"authorDomain":"onlineapps"}

Haha... that would have been interesting.

Digg.com -> Newsvine.com -> Reddit.com -> ...

{"commentId":4274976,"threadId":"432742","contentId":"2168534","authorDomain":"onlineapps"}
  • 3 votes
#1.2 - Wed Dec 3, 2008 1:15 PM EST
{"commentId":4284782,"authorDomain":"rncostarica"}

Please.... anywhere but craigslist.  Too cruel. ;)

{"commentId":4284782,"threadId":"432742","contentId":"2168534","authorDomain":"rncostarica"}
  • 2 votes
#1.3 - Thu Dec 4, 2008 1:16 AM EST
Reply
{"canLink":false,"threadId":"432742","isPrivate":false}
Leave a Comment:
You're in Easy Mode. If you prefer, you can use XHTML Mode instead.
As a new user, you may notice a few temporary content restrictions. Click here for more info.
{"threadId":"432742","contentId":"2168534"}
Start TrackingStart Tracking
Stop TrackingStop Tracking