Hacker News new | ask | show | jobs
by ishouldbework 198 days ago
That should be prevented by dnssec no?
1 comments

Depends on who your adversary is. If it's your ISP: no, DNSSEC doesn't prevent that (in every mainstream deployment scenario, your upstream DNS recursive server is the only thing really doing DNSSEC validation).