Posts

Showing posts with the label DNS

Don’t Let Your Domain Name Become a “Sitting Duck”

Image
 By  KrebsOnSecurity More than a million domain names — including many registered by Fortune 100 firms and brand protection companies — are vulnerable to takeover by cybercriminals thanks to authentication weaknesses at a number of large web hosting providers and domain registrars, new research finds. Your Web browser knows how to find a site like example.com thanks to the global Domain Name System (DNS), which serves as a kind of phone book for the Internet by translating human-friendly website names (example.com) into numeric Internet addresses. When someone registers a domain name, the registrar will typically provide two sets of DNS records that the customer then needs to assign to their domain. Those records are crucial because they allow Web browsers to find the Internet address of the hosting provider that is serving that domain. But potential problems can arise when a domain’s DNS records are “lame,” meaning the authoritative name server does not have enough informatio...

“Downthem” DDoS-for-Hire Boss Gets 2 Years in Prison

By  Krebs On Security A 33-year-old Illinois man was sentenced to two years in prison today following his conviction last year for operating services that allowed paying customers to launch powerful distributed denial-of-service (DDoS) attacks against hundreds of thousands of Internet users and websites. Matthew Gatrel of St. Charles, Ill. was found guilty for violations of the Computer Fraud and Abuse Act (CFAA) related to his operation of downthem[.]org and ampnode[.]com, two DDoS-for-hire services that had thousands of customers who paid to launch more than 200,000 attacks. Despite admitting to FBI agents that he ran these so-called “booter” services (and turning over plenty of incriminating evidence in the process), Gatrel opted to take his case to trial, defended the entire time by public defenders. Gatrel’s co-defendant and partner in the business, Juan “Severon” Martinez of Pasadena, Calif., pleaded guilty just before the trial. After a nine-day trial in the Central District...

Iranian hackers exposed in a highly targeted espionage campaign

By Bill Toulas, Bleeping Computer Threat analysts have spotted a novel attack attributed to the Iranian hacking group known as APT34 group or Oilrig, who targeted a Jordanian diplomat with custom-crafted tools. The attack involved advanced anti-detection and anti-analysis techniques and had some characteristics that indicate lengthy and careful preparation. Security researchers at Fortinet have gathered evidence and artifacts from the attack in May 2022 and compiled a technical report to highlight APT34’s latest techniques and methods. Targeting diplomats The spear-phishing email seen by Fortinet targeted a Jordanian diplomat, pretending to be from a colleague in the government, with the email address spoofed accordingly. The email carried a malicious Excel attachment that contained VBA macro code that executes to create three files, a malicious executable, a configuration file, and a signed and clean DLL. The macro also creates persistence for the malicious executable (update.exe) by ...

Why your website is about to get more expensive

Image
By Leah Nulen, Politico The most popular websites are about to get more expensive because of a no-bid deal between the Trump administration and the company that holds a monopoly on managing a prime part of the internet. And the Biden team isn’t sure it can back out of the arrangement. Planned price spikes by Verisign in the coming years may add just a few dollars to the cost of registering or renewing an internet addressing ending in “.com.” But critics say that extra expense — totaling an estimated $85 million for the first year alone — will cascade through the online economy, ultimately hitting consumers. And they fault the U.S. government for not even trying to get a better deal by bidding out the contract that Verisign has held for more than two decades. “When it’s a government monopoly, you should have some mechanism to protect the consumer interests,” said Deb Garza, a former federal antitrust official who had been involved in contract discussions with Verisign during the George...