Page is a not externally linkable
- WebmasterWorld
-- Webmaster General
---- Free Dynamic DNS Services Pose Massive Security Threats


plumsauce - 7:34 am on May 6, 2008 (gmt 0)


Blocking dynamic dns is not really going to solve this or any other problem.

The herd only needs access to dynamic data. Data that points to, or is the control channel.

So, without dynamic dns, the bot designer resorts to other means of dissemination.

One easy example.

POP3 access against a series of gmail/hotmail/etc accounts. Accounts with a predictable name series that evolves against a known seed. Much like rsa access dongles.

A new gmail account every few days ought to do the trick.

Presto, dynamic access to dynamic data. Again. Without dynamic dns, paid or free.

How about dynamic http/dns?

Again, seed a one time pad of "keywords". Tag web pages with those "keywords". Have the bots search for those "keywords" on a search engine of your choice. Have the bots retrieve the http page, even from google cache. Dynamic access to dynamic data.

How about using the same techniques via bittorrent? Just seed a new file whenever you need to change the data.

So, ask the isp's to blackhole gmail and google. That ought to be ok. No possibility of client complaints there! Small price to pay to keep the net usable. No POP3, no HTTP. There's always FTP, GOPHER, ARCHIE and NNTP. What else could a netizen ask for? Why we could even have Facebook on NNTP 2.0!

Dynamic dns might be handy in this application. But, by no means is it the only means.

Whackamole anyone?


Thread source:: http://www.webmasterworld.com/webmaster/3642155.htm
Brought to you by WebmasterWorld: http://www.webmasterworld.com