I've been "off the grid" for the better part of a week but the world did not slow down to accommodate the break.
A flaw has been discovered in BIND 9, the software powering most DNS servers. SC Magazine reports that this is worse than the Kaminsky vulnerability and is being actively exploited. Here is the memo from the US CERT Vulnerability Notes.
Anyone running BIND should apply the patch immediately.
It has been an active month and information is still streaming from Blackhat and the Defcon conferences. So I'll have some posts on these this weekend.
Comments