‘Poisoned’ DNS Servers an Increasing Risk

LAS VEGAS — Security experts warn that up to 10 percent of the Internet’s Domain Name System (DNS) servers are vulnerable to cache poisoning, in which hackers trick a DNS server into redirecting legitimate traffic to bogus sites.

Security researcher Dan Kaminsky performed a scan of 2.5 million of the Internet’s visible DNS servers and found 230,000 servers that could be exploited. Cache poisoning occurs when hackers successfully corrupt the cache of a DNS, populating its memory with directions to malware servers.

The servers in the most danger are those running earlier versions of the Berkeley Internet Name Domain software (BIND). These early versions employ blind forwarding, which is the loophole potential cache poisoners seek.

Kaminsky spoke at this week’s Black Hat Security conference in Las Vegas. “If you are not monitoring your DNS activity, it is time to start,” he said. DNS servers, which resolve URLs like “https://www.xbiz.com" into numerical IP addresses, often are found at the ISP level, so they handle tens of thousands of user requests daily.

Once a DNS server is poisoned by being tricked into “trusting” another server is legitimate, all subsequent requests for a particular URL will be redirected to, perhaps, an adware or malware site. As hackers are often paid for the volume of traffic they redirect, larger and larger DNS servers are targeted.

Kaminsky performed his scan of the Internet’s DNS servers in July and has not pinpointed which of the web’s server clusters are most vulnerable.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

FSC Publishes Analysis of Federal Trade Commission Event Promoting AV

Free Speech Coalition (FSC) has published an analysis of a Federal Trade Commission (FTC) event held this week that promoted age verification among other forms of speech regulation.

GirlsDoPorn Owner Michael Pratt Pleads Guilty to Sex Trafficking

Michael Pratt, former owner of the rogue website GirlsDoPorn, pleaded guilty in the U.S. District Court for the Southern District of California on Thursday to sex trafficking and conspiracy to commit sex trafficking charges, according to a report by City News Service.

Master Nico Relaunches Site Through YourPaysitePartner

Master Nico has relaunched his official website through YourPaysitePartner (YPP).

Federal Judge Grants Partial Halt of Florida AV Law

The United States District Court for the Northern District of Florida, Tallahassee Division, has granted a preliminary injunction against HB 3, the state's age verification law, as a lawsuit filed by two online trade associations challenging the law makes its way through the courts.

Aylo Releases Statement on Suspending Access to Pornhub in France

Technology and media company Aylo, which operates adult sites including Pornhub, YouPorn, and Redtube, has released a public statement regarding its decision to block access to its sites in France.

Pineapple Support to Host Wellness Sessions at Bucharest Summit

Pineapple Support is hosting free group and one-on-one therapy sessions at Bucharest Summit, June 3-5.

Pornhub Blocks Access in France in Response to SREN Law

Pornhub parent company Aylo has opted to block access to its sites in France rather than comply with age verification requirements under the country’s Security and Regulation of the Digital Space (SREN) law.

ASACP Highlights Study on Parental Controls

The Association of Sites Advocating Child Protection (ASACP) is highlighting the results of a study on the underutilization of parental controls.

Sydney Screams Launches New Site Through Grooby's Blue.xxx

Sydney Screams has launched her new membership site, SydneyScreams.xxx, through Grooby's website management company Blue.xxx.

Mistress Mystii Is LoyalFans' 'Featured Creator' for June

LoyalFans has named Mistress Mystii as its Featured Creator for June.

Show More