Metasploit mailing list archives

Question about bailiwicked_host.rb


From: hdm at metasploit.com (H D Moore)
Date: Fri, 25 Jul 2008 08:21:15 -0500

That doesn't appear to work for BIND, with the bailiwicked_host.rb method. 
Its not an issue with the NS method, and it sounds like (re:dailydave) 
that if you use a CNAME you *can* overwrite the entry, but we haven't 
implemented the CNAME method.

-HD

On Friday 25 July 2008, Joseph Karpenko (jkarpenk) wrote:
oh, but you can...the entry in the cache and TTL value is meaningless
using this attack vector as it will be overwritten and honor the glue
within the referral response. try it, it works... ;)





Current thread: