The DNS client in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, and Vista uses predictable DNS transaction IDs, which allows remote attackers to spoof DNS responses.
- http://www.trusteer.com/docs/windowsresolver.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-020
No PoCs found on GitHub currently.