{"id":4459,"date":"2024-01-12T17:21:49","date_gmt":"2024-01-12T22:21:49","guid":{"rendered":"https:\/\/control-h.org\/?p=4459"},"modified":"2024-01-12T17:21:49","modified_gmt":"2024-01-12T22:21:49","slug":"shmoo-1","status":"publish","type":"post","link":"https:\/\/control-h.org\/index.php\/2024\/01\/12\/shmoo-1\/","title":{"rendered":"Shmoo 1"},"content":{"rendered":"\n<p>Walked in to <a href=\"https:\/\/www.shmoocon.org\/speakers#lamedns\" target=\"_blank\" rel=\"noreferrer noopener\">this<\/a> a few minutes late.<\/p>\n\n\n\n<p>The speaker is trying to do some ninjafu on name server setups.<\/p>\n\n\n\n<p>I&#8217;ve written far more than anyone ever should about NS setup.<\/p>\n\n\n\n<p>You can easily get back some real garbage on answers.<\/p>\n\n\n\n<p><strong>Feeding it all over TCP\/HTTPS won&#8217;t fix it.<\/strong><\/p>\n\n\n\n<p>I think I understand what he&#8217;s trying to do with the tool he wrote.<\/p>\n\n\n\n<p>At the same time, I&#8217;m not 100% sure I get the point.<\/p>\n\n\n\n<p>You occasionally get bad stuff from NSes.  <\/p>\n\n\n\n<p>I don&#8217;t know&#8230;.make sure your shit gives good answers?<\/p>\n\n\n\n<p>If it&#8217;s a case where somebody outside is getting bad information from your domain&#8217;s servers, feed the problem to things like dynamic firewalls so no traffic comes.  <\/p>\n\n\n\n<p>So. you wanna go to footer.com.  Their NS responses are suss.  No, you can&#8217;t visit.<\/p>\n\n\n\n<p>Like sex in the champagne room&#8230;.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Walked in to this a few minutes late. The speaker is trying to do some ninjafu on name server setups. I&#8217;ve written far more than anyone ever should about NS setup. You can easily get back some real garbage on answers. Feeding it all over TCP\/HTTPS won&#8217;t fix it. I think I understand what he&#8217;s [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[36],"class_list":["post-4459","post","type-post","status-publish","format-standard","hentry","category-uncategorized","tag-uncategorized"],"_links":{"self":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts\/4459","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/comments?post=4459"}],"version-history":[{"count":0,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts\/4459\/revisions"}],"wp:attachment":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/media?parent=4459"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/categories?post=4459"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/tags?post=4459"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}