Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Are you claiming that most DNS zone hijacks occur because an on-path attacker intercepts and spoofs replies to DNS queries? That's not the case.


What would be the most common method of DNS zone hijacks, Kaminsky attacks?


No, to a first approximation those attacks ~never happen. Most zones are hijacked by ATOs at registrars.


I never said "most". I said it happens and is documented.


I'm pretty satisfied with how this part of the thread represents this part of my argument.


yeah, the same for the rest. your fanboys are happy and the rest is just tired, because everyone who does not share your point of view has a invalid opinion.


We could live in a world where they don't exist and the vast majority of major financial institutions still wouldn't implement DNSSEC.

https://dnsinstitute.com/research/2020/banks-dnssec-202010.h...

You don't have to like, or agree with anyone. The data tells its own story.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: