That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
If your insecure site has been hijacked by phishing campaigns, you deserve to have it brought to its knees. Security is your responsibility.
Stopping phishing campaigns with Bash
121–130 of 169 posts
Re: Stopping phishing campaigns with Bash
#122That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
Have you ever tried reporting a phishing site through those legitimate channels? I have, and my experiences have been that: * The domain registrars are apologetic and well-meaning, but tend to explain that they aren't empowered to take this stuff down without being ordered to by Law Enforcement or similar. There typically isn't a mechanism available for getting LE to respond before the phish campaign is over. * The h…
Fortunately I got ahold of Roots via Twitter and the scam seems to have been shut down.
Re: Stopping phishing campaigns with Bash
#123That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
If your insecure site has been hijacked by phishing campaigns, you deserve to have it brought to its knees. Security is your responsibility.
Re: Stopping phishing campaigns with Bash
#124That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
If your insecure site has been hijacked by phishing campaigns, you deserve to have it brought to its knees. Security is your responsibility.
"Porch pirates are justified because you should have secured your amazon delivery."
"She deserved harassment because she was dressed provocatively"
"Your country didn't have a wall so it deserved to be invaded."
Re: Stopping phishing campaigns with Bash
#125Earlier quoted context omitted.
If your insecure site has been hijacked by phishing campaigns, you deserve to have it brought to its knees. Security is your responsibility.
This is prevalent logic in the security community, but it sounds strange applied to other domains. "Porch pirates are justified because you should have secured your amazon delivery." "She deserved harassment because she was dressed provocatively" "Your country didn't have a wall so it deserved to be invaded."
Re: Stopping phishing campaigns with Bash
#126Earlier quoted context omitted.
If your insecure site has been hijacked by phishing campaigns, you deserve to have it brought to its knees. Security is your responsibility.
If your insecure house has been broken into, you deserve to have all of your stuff stolen. Security is your responsibility.
Re: Stopping phishing campaigns with Bash
#127That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
Re: Stopping phishing campaigns with Bash
#128Re: Stopping phishing campaigns with Bash
#129That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
I used to report these things but ran into some issues: 1) There is no way I can see to contact anyone at Ali Cloud to report abuse and no expectation they will do anything and I've seen an increasing number of scams hosted on offshore providers with no apparent abuse reporting system. 2) Some registrars and hosting providers want you to sign up with an account first to be able to create a support ticket to report ab…
[0] https://www.icann.org/resources/pages/faqs-2013-11-26-en
Re: Stopping phishing campaigns with Bash
#130That's really... not an appropriate response, and not only for the legal reasons others mentioned. Phishing sites can be / are often served by compromised hosts, so you might as well end up doxing a box who is not run by the bad guy, causing all sorts of mayem for the legitimate owners / admins (in addition to they be compromised). Plus, you didn't solve anything, from the pattern you used it's pretty easy to cleanup…
Unless of course it's behind Cloudflare - then you cannot find out whose infrastructure the criminals are operating from and Cloudflare itself does not give a fuck. Best case scenario: they will forward your complaint to their customer - an unknown party to you who might be the criminals themselves, putting you in danger.
Thank you, Cloudflare.