Tilde Lowengrimm on Nostr: It's scary that this researcher was able to co-opt old hardcoded WHOIS and point out ...
It's scary that this researcher was able to co-opt old hardcoded WHOIS and point out how much damage that enables. More terrifying, I think, is the reminder the incredible power that legitimate registries and their actual WHOIS services have had this whole time. arstechnica.com/security/2024/09/rogue-whois-server-gives-researcher-superpowers-no-one-should-ever-have/
Published at
2024-09-13 20:06:22Event JSON
{
"id": "b03ca14807f6b130557676a71ca15048dd3af9e69c09af6cd2664a638696f9fd",
"pubkey": "77c74ac9abab134176e6c8ffe1f319332e6aeaba9e20dd02ac8bcd4aeb31b5ce",
"created_at": 1726257982,
"kind": 1,
"tags": [
[
"proxy",
"https://infosec.town/notes/9y4pqt9xl0pw19qk",
"activitypub"
]
],
"content": "It's scary that this researcher was able to co-opt old hardcoded WHOIS and point out how much damage that enables. More terrifying, I think, is the reminder the incredible power that legitimate registries and their actual WHOIS services have had this whole time. arstechnica.com/security/2024/09/rogue-whois-server-gives-researcher-superpowers-no-one-should-ever-have/",
"sig": "a75586bb19ab99a9cdc7b132359ac2906d9082657726173f317d8fcaf4ed0a13eb443339ea7d8d123108a60e3a5179de8c4c9467c6a51c71ccbb05ef35ac924e"
}