A coordinated patch was released by security researcher Dan Kaminsky of IO Active, fixing a vulnerability that exists in all Domain Name System (DNS) servers. Using this issue, an attacker could easily take over portions of the Internet and redirect users to arbitrary — and malicious — locations. Financial institutions should look closely at this — especially if they rely on third-party vendors for Internet facing operations. An attacker could disrupt or monitor operations by rerouting network traffic, capturing emails and other sensitive business data.”]
Source: https://www.govinfosecurity.com/massive-internet-security-vulnerability-discovered-a-906