answer:I wouldn’t be too worried as I imagine most larger ISPs have updated their DNS servers by now. It’s more smaller companies and ISPs who may not have updated their DNS servers which could be under threat from attacks. You can check if you’re okay or not by doing a DNS check.. There’s one on the blog of the person who found the vulnerability and another at DNSstuff. If doing those tests renders bad results, contact your ISP or use different DNS servers than those provided by your ISP, such as OpenDNS Another (easy) way to check that you’re actually on the correct site before logging in properly can be to try logging in using a password which you know is incorrect. If it rejects you, you know you’re on the real site. If it lets you in, you know it’s a scam.