Dan’s DNS Talk from Blackhat
If you’re at all into security, Web 2.0, systems administration, you need to check it out here. Yes, it’s a Powerpoint, but it’s worth opening.
It covers not just the recent DNS attacks, but use and abuse of DNS to disrupt Email, SSL, ‘Forgot your password’ systems. Also explains attack vectors for Internal systems, so your firewall won’t protect you - patch your DNS servers!
My favorite quote from the presentation - ‘Never assume an API is smarter than it had to be to ship’




