In light of rumored demonstrations at upcoming Black Hat, DNS Pinning seems to be on the horizon again as an issue:
DNS pinning is a browser technology that is designed to tie a single IP address to a single domain. Ironically, it was developed as a security precaution to help prevent malicious servers from hijacking HTTP sessions. But now researchers have discovered some pretty scary -- and shockingly easy -- anti-DNS pinning attacks, a few of which will be revealed and demonstrated at Black Hat next month.
Msg#: 3400408 posted 2:34 am on Jul 21, 2007 (gmt 0)
It's just those kinds of severe attack scenarios that have led to a resurgence of interest in the bug -- which isn't actually in DNS, but in browsers and browser plug-in programs such as Java, Flash, and Adobe...
So the fixes need to happen through a coordinated effort of browser makers, Sun Java coders, and Adobe. Sheesh!