#SittingDucks

gtbarrygtbarry
2024-11-24

Experts Uncover 70,000 Hijacked Domains in Widespread 'Sitting Ducks' Attack Scheme

Multiple threat actors have been found taking advantage of an attack technique called Sitting Ducks to hijack legitimate domains for using them in phishing attacks and investment fraud schemes for years.

"Cybercriminals have used this vector since 2018 to hijack tens of thousands of domain names"

thehackernews.com/2024/11/expe

2024-11-14

Following up on our previous domain hijacking blog, today we released a report about the threat actors using this attack, how to avoid your domains being hijacked, and how DNS plays a critical role in detecting and tracking these threat actors.
#dns #threatintel #cybercrime #cybersecurity #infosec #infobloxthreatintel #sittingducks #domainhijacking #phishing
blogs.infoblox.com/threat-inte

2024-08-06

Over 1 Million Domains at Risk of 'Sitting Ducks' Domain hijacking Technique.

Over a million domains are susceptible to takeover by malicious actors by means of what has been called a Sitting Ducks attack. The powerful attack vector, exploits weaknesses in the domain name system (DNS).

eclypsium.com/blog/ducks-now-s

#sittingducks #dns #attack #vector #hijacking #web #it #security #privacy #technology #engineering #tech #media #news

Once a domain has been taken over by the threat actor, it could be used for all kinds of nefarious activities, including serving malware and conducting spams, while abusing the trust associated with the legitimate owner.
2024-08-01

Got to love the networking guys who are like I've known about sitting ducks for years there's nothing to see here. If you knew about the rampant abuse by Russian threat actors that is directly correlated to financial crime and data breaches around the world, shame on you. Lalala shame on you. Cigarette anyone? #dns #404tds #vextrio #cybercrime #phishing #malware #sittingducks #cybersecurity #infosec blogs.infoblox.com/threat-inte

2024-07-31

This attack is unbelievably powerful, easy, and preventable. It’s the criminal’s best kept secret. Much stealthier and more effective than dangling CNAMEs. We found many Russian-nexus actors, but we suspect there are more to be found. Please boost for awareness and hope we aren’t rediscovering this attack in another 6 years. Thanks to everyone contributed to our understanding of the attack and the actors using it … including Proofpoint, @rmceoin Dave Safely, Mandatory, and @briankrebs @dnsoarc #sittingducks #dns #domainhijacking #cybercrime #cybersecurity #infosec #threatintel #malware #phishing #tds #vextrio #404tds #threatintelligence #infoblox @knitcode blogs.infoblox.com/threat-inte

Sweet Home Alaberta 🇨🇦 🇺🇦 🏳️‍🌈 🏳️‍⚧️ 🇲🇽NMBA@mstdn.ca
2024-05-29

When they say sleeper cells they mean republicanZ and conservativeZ

#EnemyWithin #Sabotage #SittingDucks

Sweet Home Alaberta 🇨🇦 🇺🇦 🏳️‍🌈 🏳️‍⚧️ 🇲🇽NMBA@mstdn.ca
2023-12-26

Russia has shot down 2 packed international passenger jets.
Russia has created war in many countries in Eastern Europe, the Baltic, the ME and Africa.
Russia is the world’s premier a terrorist state, even more than Iran.
Putin is the terrorist ordering terrorism.

Why is there no bounty on Putin?

A $100 million bounty is a strong motivator and super cheap compared to fighting against his endless terrorist wars.

#SittingDucks

Dissent Doe :cupofcoffee:PogoWasRight@infosec.exchange
2023-11-02

SingularityMD -- the group that hit Clark County School District in Nevada -- contacted me tonight. They hit Jeffco Public Schools in Colorado.

I have more details on it and will write it up tomorrow. In the meantime, you can read the district's preliminary notice:

jeffcopublicschools.org/about/

@douglevin @funnymonkey @brett @jgreig

#DataBreach #EduSec #cybersecurity #infosec #sittingducks

Lohan Gunaweeralohang
2021-10-01

In solidarity with

RT @Sandyboots2020@twitter.com

Tomorrow is !

I’m humbled & overwhelmed by the support - both here in the U.K. & globally- we maybe miles apart but we’re united in our fight for justice

Thank you from all of us from @SafeEdForAll_UK@twitter.com ❤️

More of the same tomorrow🙏🏼

🐦🔗: twitter.com/Sandyboots2020/sta

2019-03-20

So I'm at MARINA for my appointment to renew my seaman's book. Security guy says they're having technical difficulties. Since morning. I thought he meant there was a #glitch in the online appointment system because he had people write their names on sheets of paper arranged by appointment times. Nope. It's the actual system that staff need to access our records. Nothing's working.

And the IT people just arrived. 🤞

#technology 😱 #sittingducks 🦆

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst