久久999这里只有精品视频|欧美夫妻性生活黄大片|久久九九九九九九热|波多野结衣二区看黄片在线|99性爱视频97厂超碰|欧美国产丝袜成年人二级毛片|中国一圾黄片免费看a级大片|太久思思中文字幕一区|爱爱很舒服欧美91|亚洲男女AV亚洲肏屄

Domain name sinkholes and weird domain registrations

Views:3870 Time:2018-09-19 15:54:51 Author: m.unionroom.cn Contact support email

Sinkholes are why you see companies register a bunch of weird domain names.



Palo Alto Networks Inc was granted a patent today related to domain sinkholing, and it’s a continuation patent of one that was granted in 2016.


It reminded me of times I’ve seen companies (notably Microsoft) register a bunch of nonsensical domain names. Why would a company register a lot of domains with random digits and letters?


The answer is often that it’s a sinkhole.


A sinkhole redirects or blocks traffic meant for a destination. They are used by the security community to stop botnet traffic, phishing and other bad activity.


There are many ways to create a sinkhole. An ISP can simply divert traffic from the IP address you see in Whois to another. A company (or the government) can also go through the courts to get control of a domain name and then change its nameservers.


Some malware campaigns continually register new domain names as their other names get snuffed out and blocked by security companies. It’s sometimes possible to figure out what the future domain registrations will be, and that’s when you might see a company register a huge list of odd domain names. They know what domains the malware will register next, so the company registers the domains to prevent them from being registered by the bad guys.


A famous example of registering a domain to stop an attack was the domain name iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea(.)com. A person researching the WannaCry ransomware noticed this domain in the malware and registered it. It turns out that registering the domain acted as a killswitch. The malware was programmed to check in on this domain and stop if the domain was registered.


While the WannaCry example isn’t a typical sinkhole, it’s interesting to think about how domain names are used to propagate malware and botnets, and how registering domains can thwart the bad guys.


Source from domainnamewire.com, author ANDREW ALLEMANN

  • Follow
  • Follow NiceNIC on Facebook social media Follow NiceNIC on Twitter social media Follow NiceNIC on Pinterest social media Follow NiceNIC on VK social media platform Follow NiceNIC on Instagram social media platform Follow NiceNIC on YouTube social media platform
  • Address
  • ROOM 52 12/F BLOCK B, WING CHAI INDUSTRIAL BUILDING, 27-29 Ng Fong St, San Po Kong, Hong Kong
Copyright © 2012-2025 NICENIC INTERNATIONAL GROUP CO., LIMITED All Rights Reserved