#OpenNIC

Kevin Karhan :verified:kkarhan@infosec.space
2025-11-18

@AdminKirsty I got no problem, but then again I query 20 different DNS servers at the same time, so my shit just works and #OpenNIC has been solid for me...

github.com/greyhat-academy/lis

Kevin Karhan :verified:kkarhan@infosec.space
2025-11-14

@pitrh And now you know.why I use #OpenNIC

Kevin Karhan :verified:kkarhan@infosec.space
2025-11-11

@nono2357 and I agree with @quad9dns in that these are not a solution if we consider #Piracy as a problem.

  • Rather such things will only generate #StreisandEffect and increase said piracy as well as making users change over to alternatives like #OpenNIC

Besides, it should be up to the sysadmins / users to make informed decisions on what they want to filter, because the demands for a corporation, school, home network or hotel are vastly different and IMHO the only legitimate excuse to manipulate #DNS by them would be to prevent #malvertising and twart other #malware from working.

  • But I digress…
2025-11-10

Between February and August, the #Eleven11 was on the news. Using the parallel #DNS root #OpenNIC was nothing new for a botnet. Yet, this botnet was the first known botnet of it's size using the OpenNIC system.

We summarized insights in a new blog post: 161 Days of Eleven11

#DDoS #RapperBot #Eleven11bot #Netscout #ASERT #infosec

2025-11-08

Cloudfalre-dns #Rust Oxy
#Rustlang #Development @torproject
blog.cloudflare.com/introducin

None of it matters if you are utizing #onionsites that don't draw from other parts of the net (like an onion proxy), but be sure to change your trr / uri in your browser to #cloudflare for #https sites with #oniux (network.trr.mode 5 means the network chooses the resolver). Cloudflare has the tor dns monopoly, apparently. Why not something even more #decentralized like #openNIC in the future. Not developed enough now.

#Arti has two versions now
[arti-23c1c907a8c1ccef
arti-27424ad6be662444]
and has not updated documentation for binding local:9150 to socks. No systemd for #Debian yet either. Of course, that doesn't matter with oniux, although it is a mystery what they mean by "leaks" with a socks binding. I suppose a namespace will leak, then. Sure. Timelords, perhaps? Crazy. @micahflee

Kevin Karhan :verified:kkarhan@infosec.space
2025-10-21

@0x4d6165 It's only DNS when you have incompetent people at work.

  • I NEVER had #DNS issues...

But then again I use #ClouDNS & #OpenNIC and not overpriced bullshit like #aws & #CloudFlare!

PurpleJillybeansjillybeans@blog.n8fq.org
2025-08-19
I recently switched my DNS over to #OpenNIC, so my instance should be able to federate with servers on their altTLDs now.
2025-08-17

This thread here suggests that more activity might be expected again from the #OpenNIC parallel #DNS #root .

Not sure, if more activity, and a reborn of the #OpenNICproject leads to less or more abuse from the system. Any opinions from the #infosec community?

#askfedi #askinfosec

House Panther :verified_paw:housepanther@goblackcat.social
2025-08-11

So I just learned about #OpenNIC. Apparently this is a non-profit that operates an alternative DNS root with a far more democratic process for getting top level domains. Granted, you have to use their system but it’s nevertheless cool as hell!

opennic.org/

Kevin Karhan :verified:kkarhan@infosec.space
2025-08-10

Thx @lina for exposing the #Copyrightmafia's #DNS-based #internetcensorship:
cuiiliste.de

As for circumvention: Just use #OpenNIC's DNS servers...

The sheer #Zensursula-Style bullshit is the #IllicitActivity! #ISP|s should have no right to interfere with any traffic (except to defend their own infrastructure from getting hacked) unless explicitly requested by customers to do so.

I do wish @ooni would take a look at the CUII blocklist and add that to their #OONIprobe to test for.

Kevin Karhan :verified:kkarhan@infosec.space
2025-08-02

@TheDoctor512 ROFLMAO!

IMHO sollte solche #Zensursula-Shice woe diese absurde Gerichtsentscheidung als Beleidigung des Intellekts der User*innen strafbar sein.

Ich rate zu #OpenNIC was #DNS angeht:
github.com/greyhat-academy/lis

2025-07-08

@jtk

Some of them weren't rackets. They were genuine attempts to do the Internet thing of "routing around" ICANN when it obstructed change for years.

I think that the way to tell the difference is whether they still exist these decades later, now that ICANN has *eventually* allowed more top-level domain names and the obstruction that were aimed at removing has gone.

The Open Root Server Confederation went the way of the dodo so long ago that #Wikipedia deleted the article on it in 2006, because someone with an IP address could not find WWW pages about it even then.

Whereas the people offering .coin, .emc, and .bazar top-level domains in conjunction with OpenNIC are still going today. (-:

#OpenRootServerConfederation #cryptocurrency #DNS #ICANN #OpenNIC

ꙮ 𝄃𝄁𝄂𝄀𝄀𝄁𝄃🇫🇯🇱🇨🇱🇧liilliil@mastodon.online
2025-07-02

Кстати, #openNIC это #анархия в её лучшем виде: люди самооргнизуются и делают для людей свободные альтернативные доменные зоны

ꙮ 𝄃𝄁𝄂𝄀𝄀𝄁𝄃🇫🇯🇱🇨🇱🇧liilliil@mastodon.online
2025-07-02

Заметил, что #cloudns работает с зонами #opennic
Поэтому уберу-ка у себя с серверов #bind9 и воспользуюсь бесплатным их предложением, ибо всякие левые ебланы через меня стали всякие левые домены запрашивать

ꙮ 𝄃𝄁𝄂𝄀𝄀𝄁𝄃🇫🇯🇱🇨🇱🇧liilliil@mastodon.online
2025-07-02

Вы пользуетесь #openNIC?

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-25

@ZahmbieND @netresec personally I use multiple #DNS servers with #OpenNIC being my preference.

cloudns.net

2025-05-14

Curious how many of you use OpenNIC.

Kevin Karhan :verified:kkarhan@infosec.space
2025-05-13

@laird @nuintari @todb @malwaretech @iagox86 @charlvdwalt @pluralistic I guess the only workaround is to use @torproject / #TorBrowser and/or use #DNSoverTLS / #DNSoverHTTPS to verify said #DNS results.

I have a list of Servers ready for the latter. I do recommend #OpenNIC personally...

  • Feedback & Contributions welcome...
Kevin Karhan :verified:kkarhan@infosec.space
2025-03-30

@DoctorBrodsky @woe2you @miah given #Quad9 bowed before the #Contentmafia and censored #DNS requests, I'll continue to recommend using #OpenNIC's Servers instead

94.103.153.176 & 2a02:990:219:1:ba:1337:cafe:3 as well as
144.76.103.143 & 2a01:4f8:192:43a5::2

  • If you only add a single #IPv4 address, no #IPv6 resolution will take place over said provider or worse even no IPv6 connectivity at all...

I merely retain quad9 on said list for archival purposes. I Yeeted #CloudFlare aka. #ClownFlare since they are a #RogueISP!

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst