[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Level(3) DNS Spoofing All Domains



On Tuesday, November 19, 2019 1:35 PM, Mike Bolitho <mikebolitho at gmail.com> saidâ?¦
â??How many of (my) clients have miss-typed something and sent their data, unknowingly, to a 3rd party host? (Whoâ??s fault would that be?)

Yours? They paid you to set up their network properly and you set it up to resolve to Level 3. So if they "unknowingly sent their data" to a third party then it would be your fault.â??

If I was retained by my clients to setup, design, configure, and/or maintain, our clientâ??s networks. I would completely agree with you.
(FWIW, my internal network would not connect to these host even if one of my userâ??s fat-fingered the URL.)

However, Iâ??m referring to a completely autonomous 3rd party network (Say they type wwww.omb.gov<http://wwww.omb.gov>) Can I be expected to anticipate their userâ??s/APP DEVâ??s typos?

Lawrence Q. Marshall
---------------------------------------------------------------------------------------
 This email has been scanned for email related threats and delivered safely by Mimecast.
 For more information please visit http://www.mimecast.com
---------------------------------------------------------------------------------------
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20191119/3a8ab430/attachment.html>