Experts discover major Internet flaw

Published: July 9, 2008 at 11:16 AM

LOS ANGELES, July 9 (UPI) -- U.S. security experts have discovered a major flaw in the design of the Internet's address system that affects virtually every corporate computer network.

The flaw in the Domain Name System could allow hackers to steer most people using corporate networks to malicious Web sites, The Los Angeles Times reported Wednesday.

So far, hackers haven't taken advantage of the flaw, and the security experts say every major software company affected is in the process of issuing patches to fix the problem.

The man who discovered the flaw, Dan Kaminsky of the Seattle-based security firm IOActive Inc., says he hopes the patches will be broad enough that hackers won't be able to reverse-engineer them.

"We got lucky in this particular bug, because it's a design flaw," says Kaminsky. "It shows up in everyone's network, but the fix is a design fix that doesn't point directly at what we're improving."

Kaminsky says it took only a couple of hours to find the flaw but fixing it will take several months.

© 2008 United Press International, Inc. All Rights Reserved.
Order reprints



Additional News Stories
Dubai debt freeze 'carefully planned' (2 min)
Australian state bans jump racing (49 min)
Crude oil prices tumble (52 min)
British hospital accused of poor care
Doggone it! Walking the dog is exercising
Surge expected in diabetes cases, cost
Black Friday kicks off holiday shopping
fark
You're an astronaut that's going to be on the International Space Station for Thanksgiving, and...
How to avoid paying late fees, strategy #392: confuse the hell out of the manager
Teacher don't you fill me up with your rules, 'cause everybody knows that praying is allowed in...
Man who was blind for 30 years now able to see thanks to "bionic eye". With a picture that would...
Super Lemon Haze wins Cannabis Cup over Vanilla Kush and Head Bang. Totally righteous, dude
A pat on the back, a fist bump, or even an elbow bump are the new way to shake hands thanks to a...