Tuesday, September 26, 2017
Denial of service attacks can be reduced by replying to DNS requests with a huge range of nothing, and remembering it.
Group known for claiming responsibility for hacking Mark Zuckerberg's Twitter account and the WikiLeaks' DNS attack says it's behind the Vevo breach.
FarSight CEO and DNS master Paul Vixie explains how enterprises, not just telecoms and infrastructure providers, can use DNS to improve cybersecurity.
In one of our previous articles, we analyzed the NeutrinoPOS banker as an example of a constantly evolving malware family.

A week after publication, this Neutrino modification delivered up a new malicious program classified by Kaspersky Lab as Trojan-Banker.Win32.Jimmy.
In July 2017, during an investigation, suspicious DNS requests were identified in a partnerrsquo;s network.

The source of the queries was a software package produced by NetSarang. Our analysis showed that recent versions of the software had been surreptitiously modified to include an encrypted payload that could be remotely activated by a knowledgeable attacker.
Today, a dangerous new trend is emerging: steganography is increasingly being used by actors creating malware and cyber-espionage tools. Most modern anti-malware solutions provide little, if any, protection from steganography, while any carrier in which a payload can be secretly carried poses a potential threat.
As a junior network engineer at a university I wrote a lot of management scripts in Perl.  I had scripts to do things such as check switchport configurations and upgrade switch code.

Times have changed a lot since then.

The universityrsquo;s web server now runs in the cloud, rather than on my personal workstation, and Python hasnbsp;surpassednbsp;Perl  as the scripting language du jour. Network automation now has a major focus with Python as an extremely important tool.Today Irsquo;m going to show you how to use Python scripts hosted on the box and integrated into IOS.

This is far more powerful than my earlier-career scripts, and I have some simple examples for PCI compliance, Dynamic DNS ACL updates, and configuration validation.To read this article in full or to leave a comment, please click here
DNS is all fine and dandy, but with a good Hosts file you can speed up your internet experience by eliminating time-wasting links.
Certificate Transparency and OCSP Must-Staple can't get here fast enough.
Patch available for high priority issue affecting the Linux init daemon systemd.
PS, Alpine users, you need to get patching, too – for other reasons Systemd, the Linux world's favorite init monolith, can be potentially crashed or hijacked by malicious DNS servers. Patches are available to address the security flaw, and should be installed ASAP if you're affected.…