DNS Cache Attacks Continue

CYBERSPACE – The Internet Storm Center (ISC) has announced that while the DNS cache poisoning attacks that began over a month ago are continuing, solutions have become available to help protect vulnerable Windows-based webservers.

"We now understand the issues and have clear things people should do to protect themselves," announced ISC's website, offering patch files and preventive measures designed to help keep user's Windows-based servers protected from these harmful exploits.

DNS cache attacks cause unsuspecting surfers to be redirected to malicious websites which infect the visitor's computer with spyware and harmful viruses. Unlike these attacks upon a surfer's computer, such as viruses and spyware, the DNS cache attacks are aimed at the webservers that translate URLs (Xbiz.com, for example), into a relevant IP address. By "poisoning" the server's IP lookup data, an attacker can cause a transparent redirection, sending surfers to an unintended destination.

A current online poll being run by the Internet Storm Center indicates that many respondents have not yet been affected by these attacks. Currently showing that only 15 percent of respondents have reported being affected by the DNS cache attacks, and rating it as somewhere between serious and a nuisance in terms of its overall potential to continue inflicting long term harm, the poll's numbers may be somewhat optimistic for those affected businesses within our industry.

There is cause for concern in some industry quarters, as the Windows server forms the backbone of many video streaming and DRM-enabled adult websites. Websites that stand to lose revenues should they become a victim of these disruptive attacks.

While ISC had earlier raised its alert color from green to yellow, the release of the new system updates and preventative measures resulted in a return to its green status. The previous yellow signal indicated that ISC was "currently tracking a significant new threat. The impact is either unknown [or] expected to be minor to the infrastructure. However, local impact would be significant." Yellow alerts were previously issued over outbreaks of the SQL Slammer, MSBlast, and Sasser worms.

"The motivation for these attacks is very simple: money," said ISC analyst Kyle Haugsness. "The end goal of the first attack was to install spyware/adware on as many Windows machines as possible."

Americanexpress.com, cnn.com, msn.com and redhat.com were among the affected domains. "What's scarier is that this could be used in a lot more subtle fashion, to make it difficult, or even impossible to detect," added Haugsness.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

BranditScan Rolls Out 2 New Platform Features

BranditScan has introduced its new Traffic Optimization and Doxing Protection features for creators.

NMG Management Partners With Cosplayground to Scale Distribution

NMG Management has partnered with Cosplayground to expand the studio’s digital distribution and licensing operations.

Dreamcam Rolls Out 'Voice Translator AI'

Dreamcam has introduced a Voice Translator AI to its livestreaming platform.

UK Government May Limit 'Step' Porn Ban With New Amendments

The U.K. Ministry of Justice on Friday revealed new government amendments to the pending Crime and Policing Bill, potentially limiting a pending ban on “step” content to apply only if adult performers role-play as minors.

Arizona Senate Removes 'Catch-22' Provision From Consent Bill

The Arizona State Senate has amended a bill that would impose new requirements for adult content uploaded online, removing a seemingly contradictory provision that could have effectively made it impossible for adult sites to operate in the state.

Climaxx Media Launches Networking Platform

Climaxx Media has officially launched its new networking platform.

Italian Court in Aylo Case Limits International Reach of AV Rules

An Italian administrative court has ruled that Italy’s recently-enacted age verification rules for adult content may not currently be enforced against sites based in other EU member states, pending further procedural action under the EU’s Directive on Electronic Commerce.

OCC, FDIC Prohibit Use of 'Reputation Risk' by Regulators

The Office of the Comptroller of the Currency (OCC) and the Federal Deposit Insurance Corporation (FDIC) on Tuesday issued a final rule codifying the elimination of ‘reputation risk’ as a criterion in their supervision of financial institutions.

Wisconsin Governor Vetoes Age Verification Bill

Gov. Tony Evers on Friday vetoed AB 105, an age verification bill that would have allowed anyone to sue adult content providers for damages over alleged failure to age-verify users in Wisconsin, with penalties of up to $10,000 per violation.

FSC Releases Statement on Wisconsin Governor Vetoing AV Bill

The Free Speech Coalition has released a statement on Wisconsin Governor Tony Evers' veto of the state's age verification legislation.

Show More