Viewing profile — yatralalala
yatralalala
HN member- Joined
- Tue, Aug 11, 2020, 3:50 PM UTC
- HN karma
- 201
- Public activity
- 33 items
- HN profile
- View on Hacker News ↗
About yatralalala
jj@reconwave.com
Recent public activity
-
comment
Comment #46159365
Internet is no longer decenstralised. Some interesting DNS data https://news.ycombinator.com/item?id=46159249
-
comment
Comment #46159250
Given what's happening with Cloudflare downtimes, we looked at internet centralisation. GoDaddy and Cloudflare alone host ~106 millions of domains – about one-third of all the doma…
- story
-
comment
Comment #43536758
I'm all for in for it. Sadly, companies host wild stuff and forget about it. What we build is primarily focused on companies that have at least hybrid stack - some on prem, some in…
-
comment
Comment #43535506
I'm building Recon Wave ( https://reconwave.com ) - we monitor companies online perimeter and let them know when something's wrong. Recon Wave basically finds and scans all their s…
-
comment
Comment #43291076
Sorry for a bit of self promo, but just to explain we run https://reconwave.com/ , basically EASM product but more focused on network/DNS/setup level. Finding all things about doma…
-
comment
Comment #43290886
See my comment above https://news.ycombinator.com/item?id=43289743 there are many techniques!
-
comment
Comment #43290876
Zone transfers are super interesting topic. Thanks for mentioning that. It's basically the way how to get all DNS records a DNS server has. Interestingly in some countries this is …
-
comment
Comment #43290843
If you're using infra in a way [cloudflare -> your VM] I'd recommend setting firewall on the VM in a way that it can be accessed only from Cloudflare. This way, you will force ever…
-
comment
Comment #43290795
Lifehack - it's especially awesome in cases where server operator is using self-signed certs / private cert authorities. Because you will not find these in public cert logs.
-
comment
Comment #43290782
As always, depends on your threat model. Generally having private IPs in public DNS is not great, because potential attacker gets "a general idea" how your private net looks like. …
-
comment
Comment #43290707
I sadly did not see the comment above, but I'd like to just add, that this bruteforce and sniffing methods are target only against our paying customers. We built global reverse-DNS…
-
comment
Comment #43290675
So many thoughts on that, but from my perspective - obscurity is ok, but you can not depend on it at all. Great example is port knocking - it hides your open port from random nmap,…
-
comment
Comment #43289743
Hi, our company does this basically "as-a-service". The options how to find it are basically limitless. Best source is probably Certificate Transparency project as others suggested…
-
comment
Comment #42106812
similar thing - https://search.reconwave.com/ - but it's passive and includes reverse dns search (all domains for given IP)
-
comment
Comment #42009729
TLDR: they're used as a revocation mechanism for DKIM. non "paywalled" link: https://threadreaderapp.com/thread/1852021884902138123.html
- story
- story
-
comment
Comment #41907438
TIL: there's .su gtld
-
comment
Comment #41694896
Very nice, I read one of your blog posts [0] and was pretty surprised, great read! Good luck on your journey. [0] https://reconwave.com/blog/post/storing-private-keys-in-txt-...
- story
- story
-
comment
Comment #41630758
Yup, it kinda makes sense, but I agree with other commenters there that plausible deniability is not as strong here.
-
comment
Comment #41630534
Oh wow, just recently started a discussion about this on reddit [0]. Still seems pretty bad idea in all possible scenarios. I don't believe that this "plausible deniability" would …
- story