Live data from Hacker News

Viewing profile — yatralalala

yatralalala

HN member
Joined
Tue, Aug 11, 2020, 3:50 PM UTC
HN karma
201
Public activity
33 items

About yatralalala

founder of reconwave.com

jj@reconwave.com

Recent public activity

  1. comment
    Comment #46159365

    Internet is no longer decenstralised. Some interesting DNS data https://news.ycombinator.com/item?id=46159249

  2. comment
    Comment #46159250

    Given what's happening with Cloudflare downtimes, we looked at internet centralisation. GoDaddy and Cloudflare alone host ~106 millions of domains – about one-third of all the doma…

  3. story
  4. comment
    Comment #43536758

    I'm all for in for it. Sadly, companies host wild stuff and forget about it. What we build is primarily focused on companies that have at least hybrid stack - some on prem, some in…

  5. comment
    Comment #43535506

    I'm building Recon Wave ( https://reconwave.com ) - we monitor companies online perimeter and let them know when something's wrong. Recon Wave basically finds and scans all their s…

  6. comment
    Comment #43291076

    Sorry for a bit of self promo, but just to explain we run https://reconwave.com/ , basically EASM product but more focused on network/DNS/setup level. Finding all things about doma…

  7. comment
    Comment #43290886

    See my comment above https://news.ycombinator.com/item?id=43289743 there are many techniques!

  8. comment
    Comment #43290876

    Zone transfers are super interesting topic. Thanks for mentioning that. It's basically the way how to get all DNS records a DNS server has. Interestingly in some countries this is …

  9. comment
    Comment #43290843

    If you're using infra in a way [cloudflare -> your VM] I'd recommend setting firewall on the VM in a way that it can be accessed only from Cloudflare. This way, you will force ever…

  10. comment
    Comment #43290795

    Lifehack - it's especially awesome in cases where server operator is using self-signed certs / private cert authorities. Because you will not find these in public cert logs.

  11. comment
    Comment #43290782

    As always, depends on your threat model. Generally having private IPs in public DNS is not great, because potential attacker gets "a general idea" how your private net looks like. …

  12. comment
    Comment #43290707

    I sadly did not see the comment above, but I'd like to just add, that this bruteforce and sniffing methods are target only against our paying customers. We built global reverse-DNS…

  13. comment
    Comment #43290675

    So many thoughts on that, but from my perspective - obscurity is ok, but you can not depend on it at all. Great example is port knocking - it hides your open port from random nmap,…

  14. comment
    Comment #43289743

    Hi, our company does this basically "as-a-service". The options how to find it are basically limitless. Best source is probably Certificate Transparency project as others suggested…

  15. comment
    Comment #42106812

    similar thing - https://search.reconwave.com/ - but it's passive and includes reverse dns search (all domains for given IP)

  16. comment
    Comment #42009729

    TLDR: they're used as a revocation mechanism for DKIM. non "paywalled" link: https://threadreaderapp.com/thread/1852021884902138123.html

  17. story
  18. story
  19. comment
    Comment #41907438

    TIL: there's .su gtld

  20. comment
    Comment #41694896

    Very nice, I read one of your blog posts [0] and was pretty surprised, great read! Good luck on your journey. [0] https://reconwave.com/blog/post/storing-private-keys-in-txt-...

  21. story
  22. story
  23. comment
    Comment #41630758

    Yup, it kinda makes sense, but I agree with other commenters there that plausible deniability is not as strong here.

  24. comment
    Comment #41630534

    Oh wow, just recently started a discussion about this on reddit [0]. Still seems pretty bad idea in all possible scenarios. I don't believe that this "plausible deniability" would …

  25. story