Hi all
Question for BT's DNS team - does the BT DNS service filter out responses that contain private network addresses, e.g. 192.168.0.0/16, 10.0.0.0/24?
This post on medium shows a DNS rebinding attack:
Looking at my own router I couldn't see an easy route to a firewall rule for dealing with this.
Thanks
That article is a really interesting read.
BT, do you provide protection at the router AND at your ISP Level DNS Servers against attacks like this ?
From testing tonight I can confirm BT DNS does not filter out the offending responses. The link in the article discovers devices on home customer networks using private address blocks (tested a block in 10.0.0.0/8 range).
Don't shoot the messenger, but it looks like OpenDNS doesn't have this issue: