The fix for BGP’s weaknesses has big, scary, issues of its own, boffins find

October 2, 2024 at 02:40AM German researchers have identified vulnerabilities and operational challenges in the Resource Public Key Infrastructure (RPKI) protocol. RPKI was meant to secure the Border Gateway Protocol (BGP) and enhance internet routing security. However, the researchers found potential backdoors, supply chain attacks, and difficulties in patching vulnerabilities. They believe RPKI requires significant … Read more

White House Unveils Roadmap to Fix BGP

September 5, 2024 at 08:11AM The White House’s Roadmap to Enhancing Internet Routing Security addresses BGP vulnerabilities, emphasizing RPKI adoption to mitigate risks. The plan urges network operators, providers, and government entities to implement cybersecurity risk management plans and RPKI components. Despite progress, further actions, such as policy changes and wider RPKI adoption, are advocated … Read more

White House Outlines Plan for Addressing BGP Vulnerabilities

September 4, 2024 at 06:54AM The White House announced a plan to address internet routing security, focusing on vulnerabilities in the Border Gateway Protocol (BGP). These vulnerabilities have been exploited by threat actors, causing disruptions and security breaches. The plan aims to enhance BGP security through the adoption of Resource Public Key Infrastructure (RPKI) and … Read more

White House thinks it’s time to fix the insecure glue of the internet: Yup, BGP

September 3, 2024 at 08:29PM The White House aims to improve internet routing security, particularly the Border Gateway Protocol (BGP), which currently lacks adequate security features. This vulnerability has led to incidents of route hijacking and poses national security risks. The government plans to accelerate the adoption of the Resource Public Key Infrastructure (RPKI) to … Read more

Cloudflare blames recent outage on BGP hijacking incident

July 5, 2024 at 02:42PM Internet giant Cloudflare reported a recent incident where its DNS resolver service, 1.1.1.1, was affected by a combination of BGP hijacking and route leak. This led to service unavailability for some users. The company responded by engaging with networks involved, disabling peering sessions, and presenting long-term solutions to improve route … Read more

FCC Proposes BGP Security Reporting for Broadband Providers

June 7, 2024 at 08:12AM The FCC announced new reporting requirements to improve internet routing security, focusing on mitigating flaws in the Border Gateway Protocol (BGP). They propose the largest broadband providers submit quarterly reports on progress. The agency highlights the potential threats of BGP manipulation and proposes implementing security measures using RPKI. Public comments … Read more