DNS Rebinding attacks
Introduction to DNS Rebinding attacks
This is a great introduction video covering DNS rebinding and potential real-world attacks. It is a bit long but informative. Rebinding flaws have been public for a while[2] but it is always good to get a refresher every now and again.
Web Devs/Admins: remember, watch your HTTP host headers.
Happy Holidays,
Scott
----------
[1] http://ha.ckers.org/blog/20091201/dns-rebinding-video/
[2] http://crypto.stanford.edu/dns/


