DNS Re-binding Attacks

This is a little off-topic, but incredibly interesting(originally found at the O'Reilly blog). It is a paper/presentation by Dan Kaminsky at the recent Black Hat Black Ops 2007 conference on turning your browser into a tcp/ip relay. Anyway....I have only read the first half dozen pages or so, but it is really fascinating. As Artur Bergman puts it in the O'Reilly blog post, "I'm really glad Danny is on our side"

PDF here
Slides here

