Live data from Hacker News

Did Techcrunch get Hacked?

technews.techcrunch.com

1–10 of 19 posts

Re: Did Techcrunch get Hacked?

#4
post #3

it appears to have been around for 4+ years http://wayback.archive.org/web/20070915000000*/http://primar...

So the assumption I'm making here is that they set this (sub)domain up and had the IP as their old servers, the servers have changed hands (since they moved to Wordpress vs. self hosted) and the new owner has a wildcard host entry set up.

Re: Did Techcrunch get Hacked?

#5

It's available as normal on the main site so I suspect not: http://techcrunch.com/ This subdomain also has the same content: http://primaries.techcrunch.com/ http://technews.techcrunch.com/ I'm pretty sure both of these subdomains aren't ever used though.

And that second URL is the first hit if you google for the company name.

http://www.google.co.uk/search?q=black+oak+asset+management

Re: Did Techcrunch get Hacked?

#6
Probably caused by pointing to an old IP in their DNS, which is now reused for a different site. And because that server doesnt know about that domain, it shows the default vserver: http://70.32.92.201/

Still bad though, since they now have access to the cookies/local-storage of techcrunch.com itself.

Re: Did Techcrunch get Hacked?

#8
Looks like just a new owner of 70.32.92.201 where they still have some old dns records pointed..and what you see is the default vhost on new owner's site, blackoakam.com. Nothing to see here.

Re: Did Techcrunch get Hacked?

#9
The two subdomains (technews and primaries) both have the same IP of 70.32.92.201, a MediaTemple IP. TechCrunch used to host at Media Temple according to DomainTools Hosting History. There is probably an A record in the DNS pointing those subdomains to those specific IPs.

The IPs have just been recycled and are being used by MediaTemple hosting customer.

Post reply on HN