Submit Hint Search The Forums LinksStatsPollsHeadlinesRSS
14,000 hints and counting!


Click here to return to the 'Software Update server' hint
The following comments are owned by whoever posted them. This site is not responsible for what they say.
Software Update server
Authored by: Miniluv on Jul 09, '02 02:41:59PM

It is supposed to only hit the Apple servers, however Apple uses a name, such as software.apple.com, so that they can change machines if need be without impacting the end user. This is a Good Thing, however it means that if I intercept your communication with your DNS server I can send you wherever I want, and give you whatever software I want.<p>
Even if they didn't use a name, but instead used an IP, I can still spoof the transactions if I so desired. This is what's called a man-in-the-middle attack, and it's pretty old in terms of techniques. It's not an easy attack, but still very doable.<br>



[ Reply to This | # ]