Close Menu
5gantennas.org5gantennas.org
  • Home
  • 5G
    • 5G Technology
  • 6G
  • AI
  • Data
    • Global 5G
  • Internet
  • WIFI
  • 5G Antennas
  • Legacy

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
5gantennas.org5gantennas.org
  • Home
  • 5G
    1. 5G Technology
    2. View All

    Deutsche Telekom to operate 12,500 5G antennas over 3.6 GHz band

    August 28, 2024

    URCA Releases Draft “Roadmap” for 5G Rollout in the Bahamas – Eye Witness News

    August 23, 2024

    Smart Launches Smart ZTE Blade A75 5G » YugaTech

    August 22, 2024

    5G Drone Integration Denmark – DRONELIFE

    August 21, 2024

    Hughes praises successful private 5G demo for U.S. Navy

    August 29, 2024

    GSA survey reveals 5G FWA has become “mainstream”

    August 29, 2024

    China Mobile expands 5G Advanced, Chunghwa Telecom enters Europe

    August 29, 2024

    Ateme and ORS Boost 5G Broadcast Capacity with “World’s First Trial of IP-Based Statmux over 5G Broadcast” | TV Tech

    August 29, 2024
  • 6G

    India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

    August 29, 2024

    Vodafonewatch Weekly: Rural 4G, Industrial 5G, 6G Patents | Weekly Briefing

    August 29, 2024

    Southeast Asia steps up efforts to build 6G standards

    August 29, 2024

    Energy efficiency as an inherent attribute of 6G networks

    August 29, 2024

    Finnish working group launches push for 6G technology

    August 28, 2024
  • AI

    Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

    August 29, 2024

    Why Honeywell is betting big on Gen AI

    August 29, 2024

    Ethically questionable or creative genius? How artists are engaging with AI in their work | Art and Design

    August 29, 2024

    “Elon Musk and Trump” arrested for burglary in disturbing AI video

    August 29, 2024

    Nvidia CFO says ‘enterprise AI wave’ has begun and Fortune 100 companies are leading the way

    August 29, 2024
  • Data
    1. Global 5G
    2. View All

    Global 5G Enterprise Market is expected to be valued at USD 34.4 Billion by 2032

    August 12, 2024

    Counterpoint predicts 5G will dominate the smartphone market in early 2024

    August 5, 2024

    Qualcomm’s new chipsets will power affordable 5G smartphones

    July 31, 2024

    Best Super Fast Download Companies — TradingView

    July 31, 2024

    Crypto Markets Rise on Strong US Economic Data

    August 29, 2024

    Microsoft approves construction of third section of Mount Pleasant data center campus

    August 29, 2024

    China has invested $6.1 billion in state-run data center projects over two years, with the “East Data, West Computing” initiative aimed at capitalizing on the country’s untapped land.

    August 29, 2024

    What is the size of the clinical data analysis solutions market?

    August 29, 2024
  • Internet

    NATO believes Russia poses a threat to Western internet and GPS services

    August 29, 2024

    Mpeppe grows fast, building traction among Internet computer owners

    August 29, 2024

    Internet Computer Whale Buys Mpeppe (MPEPE) at 340x ROI

    August 29, 2024

    Long-term internet computer investor adds PEPE rival to holdings

    August 29, 2024

    Biden-Harris Administration Approves Initial Internet for All Proposals in Mississippi and South Dakota

    August 29, 2024
  • WIFI

    4 Best Wi-Fi Mesh Networking Systems in 2024

    September 6, 2024

    Best WiFi deal: Save $200 on the Starlink Standard Kit AX

    August 29, 2024

    Sonos Roam 2 review | Good Housekeeping UK

    August 29, 2024

    Popular WiFi extender that eliminates dead zones in your home costs just $12

    August 29, 2024

    North American WiFi 6 Mesh Router Market Size, Share, Forecast, [2030] – அக்னி செய்திகள்

    August 29, 2024
  • 5G Antennas

    Nokia and Claro bring 5G to Argentina

    August 27, 2024

    Nokia expands FWA portfolio with new 5G devices – SatNews

    July 25, 2024

    Deutsche Telekom to operate 12,150 5G antennas over 3.6 GHz band

    July 24, 2024

    Vodafone and Ericsson develop a compact 5G antenna in Germany

    July 12, 2024

    Vodafone and Ericsson unveil new small antennas to power Germany’s 5G network

    July 11, 2024
  • Legacy
5gantennas.org5gantennas.org
Home»Internet»Serious vulnerability in Internet infrastructure/Fundamental design flaw in DNSSEC discovered
Internet

Serious vulnerability in Internet infrastructure/Fundamental design flaw in DNSSEC discovered

5gantennas.orgBy 5gantennas.orgFebruary 13, 2024No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email




Darmstadt and Frankfurt, February 13, 2024

ATHENE, the National Center for Applied Cybersecurity Research, has discovered a critical flaw in the design of DNSSEC, a security extension to the Domain Name System (DNS). DNS is one of the fundamental building blocks of the Internet. This design flaw has devastating effects on essentially all DNSSEC-validated DNS implementations and public DNS providers such as Google and Cloudflare. Professor Haya Schulmann of Goethe University Frankfurt and his ATHENE team have developed a new type of attack: KeyTrap. With just his one DNS packet, a hacker can bring down all widely used DNS implementations and public DNS providers. Successful exploitation of this attack can have severe impacts on applications that use the Internet, including disabling technologies such as web browsing, email, and instant messaging. KeyTrap allows attackers to completely disable large portions of the world’s Internet. Researchers worked with all relevant vendors and major public DNS providers for several months to create numerous vendor-specific patches. The last patch was published on his Tuesday, February 13th. We strongly recommend that all DNS service providers apply these patches. Please mitigate this critical vulnerability immediately.

Researchers at ATHENE, the National Center for Applied Cybersecurity Research in Darmstadt and Frankfurt, Germany, have discovered a critical flaw in the design of DNSSEC (DNS Security Extensions) that creates a vulnerability in all Domain Name System (DNS) implementations. did. The team, consisting of Professors Haya Schulmann and Niklas Vogel of Goethe University Frankfurt, Professor Elias Heftrich of Fraunhofer SIT, and Professor Michael Widener of Darmstadt University of Technology and Fraunhofer SIT, is developing a new class of so-called algorithmic complexity. developed. The attack they dubbed “KeyTrap.” They claim that with just one DNS packet, this attack can exhaust the CPU and bring down all widely used DNS implementations and public DNS providers such as Google Public DNS and Cloudflare. has been demonstrated. In fact, a typical Bind9 DNS implementation can be down for up to 16 hours. This devastating effect led major DNS vendors to call his KeyTrap “the worst DNS attack ever discovered.” The impact of a KeyTrap attack is far-reaching. By exploiting KeyTrap, an attacker can effectively disable Internet access in systems that utilize DNSSEC-validating DNS resolvers.

The attack vector exploited in the KeyTrap class of attacks has been registered in the Common Vulnerabilities and Exposures (CVE) database as comprehensive CVE-2023-50387.

DNS has evolved into the Internet’s fundamental system, underlying a wide range of applications and facilitating new technologies. According to recent measurements, as of December 2023, 31.47% of her web clients worldwide were using DNSSEC-verified DNS resolvers. Therefore, KeyTrap attacks not only affect DNS, but also all applications that use DNS. Unavailability of DNS not only prevents access to content, but also disables security mechanisms such as anti-spam defenses, public key infrastructure (PKI), and even interdomain routing security such as RPKI (resource public key infrastructure). There is also a risk of it happening.

The defect is not recent. The weak requirement already existed in the Internet standard RFC 2535, which was retired in 1999. In 2012, this vulnerability penetrated standards RFC 6781 and RFC 6840, which are requirements for implementing DNSSEC validation. This vulnerability has been in circulation since at least August 2000. This vulnerability is built into the Bind9 DNS resolver and was introduced in the Unbound DNS resolver code in August 2007. This vulnerability has been in the standard for about 25 years, actually 24 years, but was not recognized by the community. This is not surprising, as the flaws were difficult to identify due to the complexity of DNSSEC validation requirements. This exploit required many requirements to come together, so it wasn’t easy for even DNS experts to spot. The security community has had similar experiences with much simpler vulnerabilities such as Heartbleed and Log4j. These vulnerabilities existed but no one could see them, and it took years to notice and fix them. Unfortunately, in contrast to these vulnerabilities, the vulnerabilities identified by the ATHENE team are fundamentally rooted in the DNSSEC design philosophy and are not simply software implementation bugs, so they are not easy to resolve. . Since the vulnerability was first disclosed, the team has worked with all major vendors to mitigate implementation issues, but completely preventing attacks requires a fundamental rethinking of the underlying design philosophy of DNSSEC. It seems you need to. So it looks like DNSSEC needs to be revised. standard.

The National Center for Applied Cybersecurity Research ATHENE is a research center of the Fraunhofer Gesellschaft that unites the Fraunhofer Institute for Security Information Technology (SIT) and Computer Graphics Research (IGD), Darmstadt University of Technology, Goethe University Frankfurt and Darmstadt University. PhD in Applied Science. With more than 600 scientists, ATHENE is Europe’s largest cybersecurity research center and Germany’s leading scientific research institute in the field.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleLieber Studies Big Data Volume – Algorithms of Care: Military AI, Digital Rights, and the Duty of Constant Care
Next Article 3 Use 5G in the city
5gantennas.org
  • Website

Related Posts

NATO believes Russia poses a threat to Western internet and GPS services

August 29, 2024

Mpeppe grows fast, building traction among Internet computer owners

August 29, 2024

Internet Computer Whale Buys Mpeppe (MPEPE) at 340x ROI

August 29, 2024
Leave A Reply Cancel Reply

You must be logged in to post a comment.

Latest Posts

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024

Crypto Markets Rise on Strong US Economic Data

August 29, 2024
Don't Miss

IDTechEx discusses driving the integration of antenna packaging technology for 5G and 6G

By 5gantennas.orgFebruary 27, 2024

boston, February 27, 2024 /PRNewswire/ — Once limited to military, satellite, and automotive radar applications,…

China’s important role in 6G

March 4, 2024

Golden Band and the Future of 6G (Leader Forum)

February 19, 2024

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to 5GAntennas.org, your reliable source for comprehensive information on 5G technology, artificial intelligence (AI), and data-related advancements. We are passionate about staying at the forefront of these cutting-edge fields and bringing you the latest insights, trends, and developments.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024
Most Popular

What can 5G do for packaging production?

November 29, 2023

5G could cause problems for US airlines, here’s why

June 28, 2023

Nokia and stc conduct O-RAN based 5G private wireless network trials

March 11, 2024
© 2025 5gantennas. Designed by 5gantennas.
  • Home
  • About us
  • Contact us
  • DMCA
  • Privacy Policy
  • About Creator

Type above and press Enter to search. Press Esc to cancel.