Border Gateway Protocol (BGP) Attacks
This is serious stuff. (Kim Zetter’s posts on the topic are excellent; read them.)
It’s a man-in-the-middle attack. “The Internet’s Biggest Security Hole” (the title of that first link) has been that interior relays have always been trusted even though they are not trustworthy.
EDITED TO ADD (9/12): This is worth reading.
Carlo Graziani • August 29, 2008 7:43 AM
“It’s a man-in-the-middle attack.”
Hm, I thought that MITM was a cryptological term of art. If I read this right, there is no threat to properly-mutually-authenticated-and-keyed encrypted traffic, such as VPN traffic. The route that the traffic takes is warped to pass through an attacker’s router for analysis, but Alice and Bob have nothing to fear about leaks from their VPN tunnel, or their ssh connection, or even their SSL-encrypted web commerce session (assuming Alice takes the browser’s certificate warnings seriously). Or am I missing something?