Re: [Full-Disclosure] Fw: Removal of wildcard A records from .com and .net zones

2003-10-06 Thread Valdis . Kletnieks
On Fri, 03 Oct 2003 20:30:10 CDT, Travis Good [EMAIL PROTECTED]  said:
 
 Good to see they want to give the community notice, like they did with
 their original change.

Depends what community we're talking about.  Seen on the NANOG list:

Subject: Re: Removal of wildcard A records from .com and .net zones
From: Peter Galbavy [EMAIL PROTECTED]
Date: Sat, 04 Oct 2003 09:47:56 +0100
To: Matt Levine [EMAIL PROTECTED], Matt Larson [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]

Matt Levine wrote:
 So now you care about giving notice the community?  That didn't seem
 high on your priority list when you implemented it.

The community I suspect that they are sensitive about is not NANOG etc.
but the advertisers and the shareholders.

Remember, Verisign is the effective monopigly (sic) issuer of certificates
and the monopoly controller of the largest TLD. Their long term financial
and political power is dependent on these - legitimate or corrupt
applications aside. Having any external body (even a semi-legitimate one
like ICANN) interfere will result in some real fallout for the power
mongers...

Peter




pgp0.pgp
Description: PGP signature


Re: [Full-Disclosure] Fw: Removal of wildcard A records from .com and .net zones

2003-10-04 Thread Michael Scheidell
 
 So that leaves 13 hours to spam VeriSign's data mining basis
 with meaningless requests like 
 
   while (1) {
 ($v, $w) = two_random_words_from(/usr/share/dict/words);
 system(lynx -source http://$v.$w.net  /dev/null 21);

not sure that is all that nessessary.
The spammers are actually helping DDOS verisign.

There are a lot of web sites running 'wpoision' which creates random
usernames and domain names already, ripe for the email harvesters.

See the bottom of http://www.secnap.com/contact.html for the 'Special link
for email gathering bots.'

spammers are sending email by the bizillions to verisign.
Even if verisign is dumping them, that is still bizillions of smtp
connects per second.
-- 
Michael Scheidell
SECNAP Network Security, LLC 
Main: 561-368-9561 / www.secnap.net
Looking for a career in Internet security?
http://www.secnap.net/employment/

___
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Re: [Full-Disclosure] Fw: Removal of wildcard A records from .com and .net zones

2003-10-03 Thread Jonathan A. Zdziarski
... Get ready for all the tools you fixed to start breaking again ...

(It's worth it though)


___
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Re: [Full-Disclosure] Fw: Removal of wildcard A records from .com and .net zones

2003-10-03 Thread Travis Good

Good to see they want to give the community notice, like they did with
their original change.

On Fri, 3 Oct 2003, james wrote:


 - Original Message -
 From: Matt Larson [EMAIL PROTECTED]
 To: [EMAIL PROTECTED]
 Sent: Friday, October 03, 2003 3:50 PM
 Subject: Removal of wildcard A records from .com and .net zones


 :
 : VeriSign was directed by ICANN to suspend the Site Finder service by
 : 0100 UTC on Sunday, October 5.  We requested an extension from ICANN
 : to give more notice to the community but were denied.  We will be
 : removing the wildcard A records from the .com and .net zones beginning
 : at 2300 UTC on Saturday, October 4.  The former behavior for these
 : zones (returning Name Error/RCODE=3 in response to queries for
 : nonexistent domain names) will be in place by 0100 UTC on Sunday,
 : October.
 :
 : Matt
 : --
 : Matt Larson [EMAIL PROTECTED]
 : VeriSign Naming and Directory Services

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.netsys.com/full-disclosure-charter.html


Travis Good, CISSP

___
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html