DNS Cache Poisoning Issue Update

July 30, 2008 – 3:18 PM

Ok, we have a confirmed instance where the DNS cache poisoning vulnerability was used to compromise a DNS server belonging to AT&T. This PCWorld article covers the incident. The original article makes it sound as though the Metasploit site was ‘owned’ by this incident when really the issue was that the AT&T DNS server was compromised and was providing erroneous IP addresses to incoming queries.


