[30021] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Dynamic DNS "Spoofing" & IRC

daemon@ATHENA.MIT.EDU (Thomas Wouters)
Fri May 2 17:24:33 2003

Message-ID: <007a01c310bf$28c82870$2c03010a@cibera>
From: "Thomas Wouters" <meeling@xhoy.nl>
To: "Intel Nop" <0x90@invisiblenet.net>, <bugtraq@securityfocus.com>
Date: Fri, 2 May 2003 17:26:06 +0200
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

this would mean if you get disconected from the irc server and reconed you
would not have any reverse at all, so the 'real' hack isn't there your just
'abuseing' the fact that ircd's dont lookup the hosts while your are
connected

like almoste every deamon does (like sshd/apache enz)

-- Thomas

----- Original Message -----
From: "Intel Nop" <0x90@invisiblenet.net>
To: <bugtraq@securityfocus.com>
Sent: Thursday, May 01, 2003 11:47 PM
Subject: Dynamic DNS "Spoofing" & IRC



> Step 3) Run your dyndns script for zoneedit to assign your ip address as
> whatever ip you want (in this case I'll use 127.0.0.1), then wait about a
> minute before joining a channel.
>


--------
Thomas Wouters - xhoy
e-mail: Thomas@xhoy.nl
IRC: IRCnet - #IceBox & #ne2000 | EFnet - #IceBox

* ne2000 -  Press Any Key To Continue | http://www.ne2000.nl *
* IceBox - SLUT partner | http://slut.icebox.nl *
--------


home help back first fref pref prev next nref lref last post