1997-12-02 - Re: Kashpureff stuff online

Header Data

From: “Ng Pheng Siong” <ngpsstoi@pacific.net.sg>
To: Adam Back <aba@dcs.ex.ac.uk>
Message Hash: c8267d8726064bf35bfc8db1422cb9455e1be62f52f2bc866d6f4d74b3042144
Message ID: <199712020217.KAA16801@pop2.pacific.net.sg>
Reply To: <3.0.2.32.19971201000503.0069ca58@pop.sirius.com>
UTC Datetime: 1997-12-02 02:31:13 UTC
Raw Date: Tue, 2 Dec 1997 10:31:13 +0800

Raw message

From: "Ng Pheng Siong" <ngpsstoi@pacific.net.sg>
Date: Tue, 2 Dec 1997 10:31:13 +0800
To: Adam Back <aba@dcs.ex.ac.uk>
Subject: Re: Kashpureff stuff online
In-Reply-To: <3.0.2.32.19971201000503.0069ca58@pop.sirius.com>
Message-ID: <199712020217.KAA16801@pop2.pacific.net.sg>
MIME-Version: 1.0
Content-Type: text/plain



> So what did Kashpureff do?  Who is Kashpureff?  Is he the guy at
> Alternic who did some advanced DNS hacking to get Internic DNS root to
> point to him?  Or something else?

Yup, that's him. 

IIRC, he exploited Bind's failure to check input in certain cases: 
He set his DNS server to be the delegating authority for .com, 
say; then sent a recursive query to his victim's DNS server to get 
the victim to query _his_ server; his server mixed the bogus info 
into its response to the query, thus poisoning the victim's DNS.

Cypherpunks write code.
Crackerpunks read code.



 
Ng Pheng Siong 
<ngpsstoi@pacific.net.sg>






Thread