Just one bad packet can bring down a vulnerable DNS server thanks to DNSSEC

‘You don’t have to do more than that to disconnect an entire network’ El Reg told as patches emerge

A single packet can exhaust the processing capacity of a vulnerable DNS server, effectively disabling the machine, by exploiting a 20-plus-year-old design flaw in the DNSSEC specification.…

This article has been indexed from The Register – Security

Read the original article: