Subverting BIND's SRTT Algorithm: Derandomizing NS Selection
5 min read - New vulnerability found in BIND, the most popular DNS server. Exploiting this vulnerability allows to reduce the amount of effort required for an off-path (blind) DNS cache poisoning attack. This blog post describes the vulnerability in a less formal fashion.