<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>Jamie Huskisson &#187; dynadot</title> <atom:link href="http://www.jhuskisson.com/tag/dynadot/feed" rel="self" type="application/rss+xml" /><link>http://www.jhuskisson.com</link> <description>Nottingham UK PHP, Magento, Wordpress freelance developer</description> <lastBuildDate>Mon, 19 Dec 2011 10:57:18 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>DynaDot fights back, bans Nick from everything..</title><link>http://www.jhuskisson.com/friends/dynadot-fights-back-bans-nick-from-everything</link> <comments>http://www.jhuskisson.com/friends/dynadot-fights-back-bans-nick-from-everything#comments</comments> <pubDate>Wed, 24 Jan 2007 08:25:24 +0000</pubDate> <dc:creator>Jamie Huskisson</dc:creator> <category><![CDATA[friends]]></category> <category><![CDATA[dynadot]]></category> <category><![CDATA[funnies]]></category> <guid
isPermaLink="false">http://www.jhuskisson.com/friends/dynadot-fights-back-bans-nick-from-everything</guid> <description><![CDATA[To quote Antonio: A few weeks ago, Nick Berlette found an exploit on the DynaDot website and posted it on his blog. Here&#8217;s what happened. DynaDot sends a Cease and Desist to Nick&#8217;s hosting provider: screenshot here &#8211; link to hosting. DynaDot sends a notice to GoDaddy, and his account is banned: screenshot here. DynaDot [...]]]></description> <content:encoded><![CDATA[<p>To quote Antonio:</p><blockquote><p>A few weeks ago, Nick Berlette found an exploit on the DynaDot website and posted it on his blog.<br
/> Here&#8217;s what happened.</p><p>DynaDot sends a Cease and Desist to Nick&#8217;s hosting provider: <a
href="http://files.jhuskisson.com/blog/nick_dd.gif">screenshot here</a> &#8211; <a
href="http://www.liquidxhost.com/">link to hosting</a>.</p><p>DynaDot sends a notice to GoDaddy, and his account is banned: <a
href="http://files.jhuskisson.com/blog/nick_gd.gif">screenshot here</a>.</p><p>DynaDot sends a notice to Digg, his account is banned:  (&#8220;invalid&#8221;), <a
href="http://www.digg.com/register">http://www.digg.com/register</a> (check availability on &#8220;berlette&#8221; taken)</p><p>Nic&#8217;s blog is back up, post removed:</p></blockquote><p>It&#8217;s amazing how far they went. But hey &#8211; I&#8217;d imagine he messed up their systems pretty bad considering it got to the front page of digg.</p><p><a
href="http://digg.com/tech_news/Gets_Owned_by_DynaDot">Digg this Story!</a></p><p>Tags: <a
href="http://www.jhuskisson.com/tag/dynadot" rel="tag">dynadot</a>, <a
href="http://www.jhuskisson.com/tag/funnies" rel="tag">funnies</a></p><p>Feel free <a
href="http://www.jhuskisson.com/friends/dynadot-fights-back-bans-nick-from-everything#comments">to leave a comment on this post</a>, I'd love to hear your thoughts. <a
href="http://www.twitter.com/jhuskisson">Follow me on Twitter</a>, <a
href="http://www.facebook.com/jhuskissoncom">Like JHuskisson.com on Facebook</a></p> ]]></content:encoded> <wfw:commentRss>http://www.jhuskisson.com/friends/dynadot-fights-back-bans-nick-from-everything/feed</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Fundamental mistake at DynaDot &#8211; Gain Access to Domains at DynaDot!</title><link>http://www.jhuskisson.com/dugg/fundamental-mistake-at-dynadot-gain-access-to-domains-at-dynadot</link> <comments>http://www.jhuskisson.com/dugg/fundamental-mistake-at-dynadot-gain-access-to-domains-at-dynadot#comments</comments> <pubDate>Sun, 14 Jan 2007 23:32:59 +0000</pubDate> <dc:creator>Jamie Huskisson</dc:creator> <category><![CDATA[dugg]]></category> <category><![CDATA[dynadot]]></category> <category><![CDATA[little things]]></category> <guid
isPermaLink="false">http://www.jhuskisson.com/dugg/fundamental-mistake-at-dynadot-gain-access-to-domains-at-dynadot</guid> <description><![CDATA[DynaDot, a registrar of about 55,000 domains, apparently has a very skimpy security system. I was managing a domain of mine when I decided to experiment with the URL. I found that you can get any domain you want, with a few clicks. Original Link Digg Link Seriously&#8230; 55,000 domains registered and they have such [...]]]></description> <content:encoded><![CDATA[<blockquote><p>DynaDot, a registrar of about 55,000 domains, apparently has a very skimpy security system. I was managing a domain of mine when I decided to experiment with the URL. I found that you can get any domain you want, with a few clicks.</p></blockquote><p>Original Link<br
/> <a
href="http://www.digg.com/security/Gain_Access_to_Domains_at_DynaDot">Digg Link</a></p><p>Seriously&#8230; 55,000 domains registered and they have such a fundamental security mistake as this? I could probably feel sorry for them if they had a JavaScript exploit or a 1000 character hack in the URL&#8230; but switching the ID number of the registered domain and gaining complete access? That&#8217;s just stupidity.</p><p>DynaDot coders &#8211; for shame.</p><p>Tags: <a
href="http://www.jhuskisson.com/tag/dynadot" rel="tag">dynadot</a>, <a
href="http://www.jhuskisson.com/tag/little-things" rel="tag">little things</a></p><p>Feel free <a
href="http://www.jhuskisson.com/dugg/fundamental-mistake-at-dynadot-gain-access-to-domains-at-dynadot#comments">to leave a comment on this post</a>, I'd love to hear your thoughts. <a
href="http://www.twitter.com/jhuskisson">Follow me on Twitter</a>, <a
href="http://www.facebook.com/jhuskissoncom">Like JHuskisson.com on Facebook</a></p> ]]></content:encoded> <wfw:commentRss>http://www.jhuskisson.com/dugg/fundamental-mistake-at-dynadot-gain-access-to-domains-at-dynadot/feed</wfw:commentRss> <slash:comments>1</slash:comments> </item> </channel> </rss>
