On Thursday, the domains used by ICANN, the Internet Corporation for Assigned Names and Numbers, and IANA, the Internet Assigned Numbers Authority, were hijacked to redirect users to a protest message.
A Turkish hacking group known as NetDevilz have claimed responsibility for the hack, however, there is no word on how the hijack was accomplished. The group redirected ICANN site visitors to a page with the following message:
"You think that you control the domains but you don't! Everybody knows wrong. We control the domains including ICANN! Don't you believe us? haha :) (Lovable Turkish hackers group)"
According to SANS, changes to the ICANN site were corrected within 20 minutes. However, the update took another 24 to 48 hours to propagate throughout all the DNS serves worldwide.
On June 19, NetDevilz evidently hijacked Photobucket's DNS records, which resulted in a denial of service against that service.
The timing of the attack on ICANN is embarrassing for the organisation, to say the least. Last week, ICANN announced it was opening up the generic top-level domain name (gTLD) to include just about anything. Currently, gTLDs are limited to .com, .net, .org, and 18 others. Under the new plan, like businesses could be organised under .healthcare, for example. In his blog, Neal Krawetz looks at the pros and the cons of the change.
None of the DNS hijacks have involved serving up malicious software.








1
Ruth - 31/03/09
My PC is running like new.
I was having trouble with my new computer running slow after I had only had it for a few months. I was upset thinking it was something wrong with my computer until I realized that I needed a good scan to clean out those bugs and viruses that was the real problem. When I started using Search-and-destroy Antispyware it took care of this problem and now my PC is running like new again. The antispyware solution from Search-and-destroy, which you can find at http://www.Search-and-destroy.com, has made a big difference for me and I’m sure you’ll be happy with it too.
» Report offensive content