Microsoft
is warning of an attack that could be used to divert someone's web traffic
through a malicious proxy server. A malicious WPAD.dat file could be placed in
the Domain Name System (DNS) or the Windows Internet Naming Service (WINS),
Microsoft said. The client application, looks in DNS or WINS to resolve the name
of the hosting that has the proxy configuration file. Microsoft has posted
information on its support site regarding this issue along with
details for
administrators on how to configure DNS and WINS on their servers to help
prevent this type of attack.