3 ms·
Hey, I'm the author of the talk, but I'm not the one who posted this. I'll give you some context :) It's the slides from a talk I gave yesterday at Derbycon -
by iagox86 12y ago
Hey, I'm the author of the talk, but I'm not the one who posted this. I'll give you some context :)
It's the slides from a talk I gave yesterday at Derbycon - https://www.derbycon.com https://www.derbycon.com. It was recorded, but it doesn't look like the recording is up just yet - it will be on http://irongeek.com http://irongeek.com in the next couple days (and maybe tweeted from @irongeek_adc sooner - he's already posted a few videos from talks later than mine, but I was in kind of a weird room).
Anyway, this talk doesn't really have anything to do with DNSSEC. These attacks would work just fine with or without DNSSEC. It's simply abusing DNS the way DNS was supposed to work.
And finally, I'll definitely be posting more information (releasing the tool, the video, etc) on my own twitter account - @iagox86.
- namecast 12y agoYou forgot the link to dnscat2 on GH - I hope you don't mind, it's in the presentation and totally the first thing I wanted to look at: https://github.com/iagox86/dnscat2 https://github.com/iagox86/dnscat2 I see shell/exec/upload/download payloads mentioned in the command protocol docs, very cool.
- axaxs 12y agoAre you from louisville by chance or just visiting?