Security News

BIND 9.20 released: Enhanced DNSSEC support, application infrastructure improvements
2024-07-25 06:51

BIND 9.20, a stable branch suitable for production use, has been released. In BIND 9.16, the developers introduced a new networking manager using libuv as an asynchronous event handler on top of the existing application infrastructure.

CISA Warns of Exploitable Vulnerabilities in Popular BIND 9 DNS Software
2024-07-25 05:30

The Internet Systems Consortium (ISC) has released patches to address multiple security vulnerabilities in the Berkeley Internet Name Domain (BIND) 9 Domain Name System (DNS) software suite that...

High-Severity Flaws Uncovered in Atlassian Products and ISC BIND Server
2023-09-22 08:00

Atlassian and the Internet Systems Consortium (ISC) have disclosed several security flaws impacting their products that could be exploited to achieve denial-of-service (DoS) and remote code...

ISC Releases Security Patches for New BIND DNS Software Vulnerabilities
2023-01-28 07:55

The Internet Systems Consortium has released patches to address multiple security vulnerabilities in the Berkeley Internet Name Domain 9 Domain Name System software suite that could lead to a denial-of-service condition. "A remote attacker could exploit these vulnerabilities to potentially cause denial-of-service conditions and system failures," the U.S. Cybersecurity and Infrastructure Security Agency said in an advisory released Friday.

New 'Zombinder' platform binds Android malware with legitimate apps
2022-12-08 10:00

A darknet platform dubbed 'Zombinder' allows threat actors to bind malware to legitimate Android apps, causing victims to infect themselves while still having the full functionality of the original app to evade suspicion. This new platform was discovered by cybersecurity firm ThreatFabric, which spotted malicious Windows and Android campaigns distributing multiple malware families.

BIND Vulnerabilities Expose DNS Servers to Remote Attacks
2021-04-30 08:53

The Internet Systems Consortium has released updates for the BIND DNS software to patch several vulnerabilities that can be exploited for denial-of-service attacks and one possibly even for remote code execution. Only servers using a certain feature with non-default configurations are vulnerable to attacks, but ISC suggested these types of servers may not be uncommon.

Flaw in BIND Security Feature Allows DoS Attacks
2018-08-09 05:18

The Internet Systems Consortium (ISC) revealed on Wednesday that the BIND DNS software is affected by a serious vulnerability that can be exploited for denial-of-service (DoS) attacks. read more

Two Vulnerabilities Patched in BIND DNS Software
2018-05-21 04:40

Updates announced on Friday by the Internet Systems Consortium (ISC) for BIND, the most widely used Domain Name System (DNS) software, patch a couple of vulnerabilities. While attackers may be...

Vulnerability in ISC BIND leads to DoS, patch today!
2018-01-17 16:00

The Internet Systems Consortium has released security updates for BIND, the most widely used Domain Name System (DNS) software on the Internet, and a patch for ISC DHCP, its open source software...

DNS Servers Crash Due to BIND Security Flaw
2018-01-17 08:25

Updates released by the Internet Systems Consortium (ISC) for BIND patch a remotely exploitable security flaw that has caused some DNS servers to crash. read more