Dev Shed Lounge
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsOtherDev Shed Lounge

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old September 15th, 2003, 10:21 PM
Ctb's Avatar
Ctb Ctb is offline
An Ominous Coward
Dev Shed Specialist (4000 - 4499 posts)
 
Join Date: Jan 2002
Posts: 4,425 Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level) 
Time spent in forums: 3 Weeks 10 h
Reputation Power: 0
Angry Verisign Abuse

I was just over at Slashdot, and it looks like Verisign has gone forward with it's plan to Abuse DNS resolutions. For everyone's edification, locate your hosts file and add the line:
Code:
216.239.51.99     sitefinder.verisign.com

That IP will redirect to Google which was my choice, but feel free to redirect to the site of your choosing. Verisign can't win that easy.

Reply With Quote
  #2  
Old September 15th, 2003, 11:00 PM
SammyK's Avatar
SammyK SammyK is offline
Happy Monkey
Dev Shed Intermediate (1500 - 1999 posts)
 
Join Date: Nov 2001
Location: UK (University of Kentucky)
Posts: 1,810 SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level) 
Time spent in forums: 3 Days 23 h 9 m 31 sec
Reputation Power: 42
That's low. I sent mine to DirectNIC:
Code:
204.251.10.43   sitefinder.verisign.com
__________________

Reply With Quote
  #3  
Old September 15th, 2003, 11:42 PM
Ed----Ed's Avatar
Ed----Ed Ed----Ed is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Sep 2003
Posts: 121 Ed----Ed User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 6
I think it is time to organize a DDOS, mabye I will try.

All we simply do is all use incorrect domains that will trigger it, I wonder how many people we can get to do it all at once.

Reply With Quote
  #4  
Old September 16th, 2003, 05:33 AM
a.koepke's Avatar
a.koepke a.koepke is offline
Second highest poster :p
Dev Shed God 5th Plane (7000 - 7499 posts)
 
Join Date: Jul 2001
Posts: 7,323 a.koepke User rank is Sergeant (500 - 2000 Reputation Level)a.koepke User rank is Sergeant (500 - 2000 Reputation Level)a.koepke User rank is Sergeant (500 - 2000 Reputation Level)a.koepke User rank is Sergeant (500 - 2000 Reputation Level)a.koepke User rank is Sergeant (500 - 2000 Reputation Level) 
Time spent in forums: 8 h 13 m 55 sec
Reputation Power: 27
I think this really sucks.... it hasnt reached Australia yet though... if I enter an invalid address Mozilla still spits it out.

Was reading on /. that MSN would most likely be really annoyed at this since IE's search feature that appears when invalid addresses are entered will be rendered useless.

Reply With Quote
  #5  
Old September 16th, 2003, 09:59 AM
Stink Sleeve's Avatar
Stink Sleeve Stink Sleeve is offline
Contributing User
Dev Shed Novice (500 - 999 posts)
 
Join Date: Mar 2003
Location: New Hampshire, USA
Posts: 550 Stink Sleeve User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 17 m 26 sec
Reputation Power: 6
Quote:
...MSN would most likely be really annoyed at this since IE's search feature that appears when invalid addresses are entered will be rendered useless.


So should we expect Microsoft to purchase Verisign in the next
few months?
__________________
Download Mozilla Firefox Now!

Reply With Quote
  #6  
Old September 16th, 2003, 10:04 AM
SammyK's Avatar
SammyK SammyK is offline
Happy Monkey
Dev Shed Intermediate (1500 - 1999 posts)
 
Join Date: Nov 2001
Location: UK (University of Kentucky)
Posts: 1,810 SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level) 
Time spent in forums: 3 Days 23 h 9 m 31 sec
Reputation Power: 42
Quote:
Originally posted by Stink Sleeve
So should we expect Microsoft to purchase Verisign in the next
few months?
I would not be at all surprised.

Reply With Quote
  #7  
Old September 16th, 2003, 10:31 AM
Ctb's Avatar
Ctb Ctb is offline
An Ominous Coward
Dev Shed Specialist (4000 - 4499 posts)
 
Join Date: Jan 2002
Posts: 4,425 Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level) 
Time spent in forums: 3 Weeks 10 h
Reputation Power: 0
Some people brought up a good point about MTAs and Spam filters being fragged by this. Think about it - if I send e-mail to somedomian.com (not the misspelling), it will succesfully deliver to the verisign IP which is running an SMTP server on port 25. The message will then bounce off them. They can collect e-mails as the bounces occur, PLUS, it breaks the MTAs second attempt because it will think that it has successfully resolved a domain and delivered the message. On top of that, what about spam filters that rely on resolving headers to valid IPs? A bunch of faked headers will "properly" resolve to the catch-all IP and allow spam through on the belief that the message came from a valid sender.

DNS caching, MTAs, and spam filters all need to be patched against this BS now and will remain broken until they do.

It truly sickens me to see just what modern capitalism can do to anything it touches. Marketers, sales people, and management are just never happy until they've ruined things for everyone else.... I hope ICANN (contact them: comments@icann.org) and the government create a severe backlash and utterly destroy these fools for good... but I'm not holding my breath.

[edit]
Here's some good explanation on the matter. Particularly, see the 2nd and 3rd follow-ups to this post:

http://gnso.icann.org/mailing-lists...a/msg00309.html
[/edit]

[edit2]
Andreas - btw... you're probably seeing cached results. If you use 'host' to query an authoritative nameserver directly you'll see the ****ed verisign ip
[/edit]

Last edited by Ctb : September 16th, 2003 at 10:55 AM.

Reply With Quote
  #8  
Old September 16th, 2003, 11:40 AM
Shocka's Avatar
Shocka Shocka is offline
dont click here
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Jun 2002
Posts: 409 Shocka User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 7 h 35 m
Reputation Power: 7
i currently can not access msn.com..

when i goto msn.com i got 207.68.173.254 which is one ofht verisign ips!

Reply With Quote
  #9  
Old September 16th, 2003, 12:47 PM
Ctb's Avatar
Ctb Ctb is offline
An Ominous Coward
Dev Shed Specialist (4000 - 4499 posts)
 
Join Date: Jan 2002
Posts: 4,425 Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level)Ctb User rank is Colonel (50000 - 60000 Reputation Level) 
Time spent in forums: 3 Weeks 10 h
Reputation Power: 0
??

A quick nslookup shows that www.msn.com is 207.68.173.254

((BTW.. I'm stuck on a WinNT box atm - hence my archaic network tools))

Reply With Quote
  #10  
Old September 16th, 2003, 04:20 PM
Stink Sleeve's Avatar
Stink Sleeve Stink Sleeve is offline
Contributing User
Dev Shed Novice (500 - 999 posts)
 
Join Date: Mar 2003
Location: New Hampshire, USA
Posts: 550 Stink Sleeve User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 17 m 26 sec
Reputation Power: 6
SpamAssasin FYI

http://www.merit.edu/mail.archives/nanog/msg13665.html

And this is only the beginning. Every IT that has to work to fix
whatever they broke on us, log your man-hours so we can
charge them later in a lawsuit

Reply With Quote
  #11  
Old September 16th, 2003, 04:38 PM
SammyK's Avatar
SammyK SammyK is offline
Happy Monkey
Dev Shed Intermediate (1500 - 1999 posts)
 
Join Date: Nov 2001
Location: UK (University of Kentucky)
Posts: 1,810 SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level)SammyK User rank is Sergeant Major (2000 - 5000 Reputation Level) 
Time spent in forums: 3 Days 23 h 9 m 31 sec
Reputation Power: 42
I don't have SpamAssassin or anything, but is there a way to see if the address goes back to sitefinder.verisign.com and deny it?

I have gone as far as denying all of Yahoo... it's just plain annoying.

Reply With Quote
  #12  
Old September 16th, 2003, 05:02 PM
Stink Sleeve's Avatar
Stink Sleeve Stink Sleeve is offline
Contributing User
Dev Shed Novice (500 - 999 posts)
 
Join Date: Mar 2003
Location: New Hampshire, USA
Posts: 550 Stink Sleeve User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 17 m 26 sec
Reputation Power: 6
Quote:
I don't have SpamAssassin or anything, but is there a way to see if the address goes back to sitefinder.verisign.com and deny it?


Yes, if there is any unresolved .com or .net domain.

Reply With Quote
  #13  
Old September 16th, 2003, 10:18 PM
Doug G Doug G is offline
Grumpier Old Moderator
Dev Shed God 13th Plane (11000 - 11499 posts)
 
Join Date: Jun 2003
Posts: 11,234 Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level)Doug G User rank is Lieutenant General (80000 - 90000 Reputation Level) 
Time spent in forums: 1 Month 3 Days 7 h 3 m 50 sec
Reputation Power: 909
So is Verisign run by a Darl McBride clone or something Or maybe the other way around.

Verisign has an uncanny ability to upset users, beginning with their spamming their users when they were the only domain game in town, to their deceptive to the point of fraudulent domain renewal mailings to domains that weren't registered through them, and now this.

Yecch.

Reply With Quote
  #14  
Old September 16th, 2003, 11:24 PM
Shocka's Avatar
Shocka Shocka is offline
dont click here
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Jun 2002
Posts: 409 Shocka User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 7 h 35 m
Reputation Power: 7
Quote:
Originally posted by Doug G
So is Verisign run by a Darl McBride clone or something Or maybe the other way around.

Verisign has an uncanny ability to upset users, beginning with their spamming their users when they were the only domain game in town, to their deceptive to the point of fraudulent domain renewal mailings to domains that weren't registered through them, and now this.

Yecch.


so verisign wud be the dumptards.. that sent me a letter that domain renewal is 26.99 or some crap 1 week before my registrar OpenSRS did.. ??

Reply With Quote
  #15  
Old September 17th, 2003, 01:20 AM
kfickert's Avatar
kfickert kfickert is offline
Capt'n
Dev Shed Novice (500 - 999 posts)
 
Join Date: May 2001
Posts: 559 kfickert User rank is Corporal (100 - 500 Reputation Level)kfickert User rank is Corporal (100 - 500 Reputation Level)kfickert User rank is Corporal (100 - 500 Reputation Level)