Saturday, July 12, 2008

The movie "Untraceable"

I saw the movie 'Untraceable", a serial killer movie starred by Diane Lane. Diane is cybercrime specialist FBI. The serial killer is a very talented criminal, knows programming, electronics, DNS hacking and other stuffs that is so hard to believe he can do it himself. While killing his victim, he video stream it over the Internet.

What really catch my attention is the DNS exploits he done, the movie was release January 25,2008 and while in real life there was a security advisory about DNS cache poisoning just early this month. It means that any cracker/hacker out there can basically alter the legit traffic of a server to a bogus one. Imagine a ecommerce server, payment system and credit cards.


While in the movie, the hacker was able to "owned" thousands of machine running DNS and dynamically changing his machine IP address (warning: geek speak). This made the FBI impossible to track the killer down. The killer only allow US viewers only, blocking foreign IP addresses. The FBI doesn't even know what to do on tracking this serial killer. They didn't even talk to ISPs or NAPs, or the CERTs and CSIRTs, Domain Registrars.

DNS records needs to be propagated before it become the new IP address gets reflected, the killer video streaming change IP address automatically and gets it working after FBI blocked the current IP address. Can it be done? hmmm

No comments: