ISC BIND DoS Flaw Prompts Patch Advisory
Japan's IPA warns of a remote DoS vulnerability in ISC BIND DNS software, urging admins to update, though no active exploitation has been observed.
The Information-technology Promotion Agency (IPA) of Japan issued an advisory regarding a denial-of-service vulnerability in BIND, the widely used DNS server software maintained by ISC. If exploited, the flaw could allow an attacker to cause unintended service outages on affected DNS servers.
As of the advisory date, no in-the-wild exploitation has been confirmed, but IPA cautions that future attacks are possible given the vulnerability's public disclosure. ISC and various vendors distributing BIND have released updated versions addressing the issue, and administrators are urged to apply these patches promptly to avoid potential service disruption.
Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2022/alert20230126.html
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free