Preliminary research
DNS Cache Poisoning Like it's 2006
AI-collected research leads through 22 September 2026, including targeted additions between broader sweeps. Unranked, incomplete, not community-vetted, and subject to change.
Cache poisoning against BIND 9 that predicts BOTH values a spoofed answer must match - the UDP source port and the TXID - where most prior attacks predict only one, and does it entirely from the client side, with no attacker-operated authoritative server. The predictions come from weaknesses in BIND's pseudo-random number generation.
Record
- Researcher
- Omer Ben-Simhon and Amit Klein
- Published by
- usenix.org
- Topic
- HTTP
In the archive
Related sources
- DNS Cache Poisoning Like it's 2006 (Paper) Whitepaper
- CVE-2025-40780: Cache poisoning due to weak PRNG Advisory
Tags
This page is the archive's own catalogue record. The research is the work of Omer Ben-Simhon and Amit Klein, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .