Tuesday, December 04, 2007

From Fast-Flux to RockPhish - Part 2

Last Friday, I started some analysis on fast-flux techniques. I stopped my discussion with single-flux so today I will improve on the camouflage!! To do this, the fake site’s IP addresses are varying as well as the IP addresses of the name servers that define them in the DNS architecture. This is double-flux.

Read the article [Part 1 underneath if you missed it] HERE.


Post a Comment

Links to this post:

Create a Link

<< Home