Opened 13 months ago

Last modified 13 months ago

#20 new FalseNegative

Reported by: admin Owned by:
Priority: major Milestone: Release Candidate Beta
Component: RPZ Version: 0.1
Severity: savir Keywords: typosquatting

Description is a typically TypoSquatting and is therefore listed within our DNS servers as cname for ! it's not sure if this CNAME is working as it depends on the setup of IANA's webserver. Alternatively we will setup our own http redirect.

A litle digging on this domain show that the goes back to "Wild West Domain"... the name says it all.... don't you think?

The domain is regitret via godaddy, who is the best in class when it comes to internet security or privacy

pdnsutil add-record '*' CNAME 345600
New rrset:
* IN CNAME 345600
pdnsutil add-record '' CNAME 345600
New rrset: IN CNAME 345600

Attachments (0)

Change History (3)

comment:1 by admin, 13 months ago

hmm was thinking about blocking the entire DNS servers holding the * however that's not quit possible as the servers * are in the dirty hands of who then again is the very same TypoSquatting bandits of

Conclusion is it's impossible to block the * DNS server as it would interfere on to many innocent humans who don't know better.

comment:2 by admin, 13 months ago is NOT necessary one of the same, but more input is needed

comment:3 by admin, 13 months ago

Unfortunately the CNAME records isn't enough... leaving us to do evil things... DNS spoofing or the less evil return the NXDOMAIN in the dns....

Comments allowed and very welcome

Modify Ticket

as new The ticket will remain with no owner.

Add Comment

E-mail address and name can be saved in the Preferences .
Note: See TracTickets for help on using tickets.