[nsp-sec] (AS33626 - upstreams AS701, AS2914, AS3356, AS27524) ns1.dsredirection.com and ns2.dsredirection.com - Might be 0wned?!??!?

Florian Weimer fweimer at bfk.de
Fri May 9 03:45:54 EDT 2008


* Brian Eckman:

> This stinks really badly - but I don't have solid proof of massive
> evilness outside of what I've presented thus far. Can anyone (Cymru,
> perhaps?) look into it some more - I gotta get home for parent
> duties...

I think this might just be regular typosquatting.  These folks don't
want to put a zone for each domain they own into their name servers,
so they add A and NS records at the root.  I agree that it's evil, but
it's not that kind of evilness which concerns nsp-sec, IMHO.  It's
more of a policy issue, but registries tend to look the other way.

-- 
Florian Weimer                <fweimer at bfk.de>
BFK edv-consulting GmbH       http://www.bfk.de/
Kriegsstraße 100              tel: +49-721-96201-1
D-76133 Karlsruhe             fax: +49-721-96201-99



More information about the nsp-security mailing list