• Alphane Moon@lemmy.world
    link
    fedilink
    English
    arrow-up
    101
    ·
    1 day ago

    Funny how the author immediately decided to shut everything down when he realized the number of peer/torrents still sending requests to the domain.

    • evidences@lemmy.world
      link
      fedilink
      English
      arrow-up
      95
      arrow-down
      1
      ·
      1 day ago

      Orphaned domains like this are interesting, there was a defcon talk, I think, where the presenter bought a bunch of blacklisted orphaned domains just to see if anything would try and connect to them. They got hit with so many botnet clients trying to phone home.

      • MysteriousSophon21@lemmy.world
        link
        fedilink
        English
        arrow-up
        37
        ·
        1 day ago

        Yeah those orphaned domains are a goldmine for security researchers, there was a similar talk at blackhat where they showed how expired domains from major companies still recieved auth tokens and sensitive data for months after expiry.

      • Maestro@fedia.io
        link
        fedilink
        arrow-up
        43
        arrow-down
        1
        ·
        1 day ago

        Orphaned IPs as well. If you have an IPv4 from your cloud provider and you want to retire it, you should thoroughly scrub your DNS and all other configs before doing so. Otherwise it’s trivial for someone else to spin up a machine on that IP address and abuse your domain.