EasyDNS admits that it was targeted by a social engineering attack resulting in the eth.limo domain being hijacked

robot
Abstract generation in progress
ME News Report, April 20 (UTC+8), the ENS-to-Web gateway eth.limo experienced DNS hijacking in the early morning of April 17 Beijing time. The domain registrar EasyDNS admitted that the incident was caused by a social engineering attack, marking the company's first successful social engineering attack targeting customers in 28 years. The attacker impersonated an eth.limo team member to trick EasyDNS into executing an account recovery process, followed by two changes to the domain name servers. Because the attacker did not obtain eth.limo's signing key, DNSSEC validation rejected the attacker's changes, and the resolver returned an error instead of a malicious response. eth.limo stated that currently no users are known to be affected and will migrate to EasyDNS-related services that do not support account recovery. Vitalik Buterin warned users during the incident to avoid using eth.limo links and to access directly via IPFS, and confirmed on Saturday that the issue has been resolved. (Source: PANews)
ENS1.24%
FIL3%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments