In this talk, we will disclose to OARC-members only a vulnerability that can be exploited to carry large DoS attacks against authoritative servers. It is not a theoretical threat, although it does not seem to have been yet exploited in full scale — not that we are aware.
We have already notified pertinent parties that are vulnerable to this threat — and they are working to fix it.
In the meantime, we want to notify authoritative server operators of how they can protect themselves. We will release accompanying source code to help in this process.