Live data from Hacker News

Microsoft takes down No-IP.com domains

blogs.technet.com

121–130 of 261 posts

Re: Microsoft takes down No-IP.com domains

#121
1 - Court seems to quick to grant Microsoft control of the domains

2 - No-IP statement that they have an open channel with Microsoft executives but never (never?) received a complain from MS about any malicious activity is doubtful (sure MS can produce evidence to the contrary)

3 - What was the urgency and how was this presented to the judge? Personally I don't feel the urgency to use a takeover maneuver in this case, but is there information that shows the impact of not acting was too great?

4 - Our governments are so inept at fighting cyber-crime that instead of sending the request to a govt-regulated cyber-security unit they had to trust Microsoft's with the enforcement? That's sad.

Like others, I am uneasy but thankful to MS. Just wish more details would be shared.

Re: Microsoft takes down No-IP.com domains

#122

Earlier quoted context omitted.

>If my neighbor sometimes had loud parties that bothered me, could I be granted the right to stand in front of his door What if they were bothering 7.4 million people and inconveniencing many more? And then didn't show up in court in spite of summons? The police or courts will take that far more seriously.

Microsoft is not the police or courts.

It was the court that allowed Microsoft to do this.

Re: Microsoft takes down No-IP.com domains

#123
post #108

Earlier quoted context omitted.

My own comments about your company are based on what I described in https://news.ycombinator.com/item?id=7880514 . Would you care to respond to my statements in that post?

Sure. Pardon the copy-and-paste reply, but it's a perfect opportunity for me to publish up a draft blog post I wrote half a year ago in anticipation of a Brian Krebs post on the topic of Booter sites. Brian's article didn't turn out nasty enough to warrant a response, but I've had the post sitting around in by drafts folder for a while and it addresses your points as well. ======== Why a Hunger Games-Like Vision for…

> Booter sites, you may argue, are different. But the key question is where do you draw the line. If a site says you can push a button and launch an attack should we take that down? What about one that has a phone number you can call? Or gives you instructions on launching the attack yourself? CloudFlare is many things, but one thing we are not is the Internet cops.

That is incredibly disingenuous. It's simple: if you knowingly facilitate an illegal service on your site, your service gets terminated. Every other reputable CDN and hosting provider can figure this out but somehow you can't? Give me a break.

Re: Microsoft takes down No-IP.com domains

#126
post #101

Just ran a dig +trace on no-ip.biz. Just... wtf. Who had acted upon that court order?! I thought that the days the US had full control over the internet were LONG past. ` biz. 172800 IN NS a.gtld.biz. biz. 172800 IN NS b.gtld.biz. biz. 172800 IN NS c.gtld.biz. biz. 172800 IN NS e.gtld.biz. biz. 172800 IN NS f.gtld.biz. biz. 172800 IN NS k.gtld.biz. ;; Received 308 bytes from 192.203.230.10#53(192.203.230.10) in 526 m…

"full control over the internet" is distinct from control over US corporations. Dot biz is operated by Neustar and they are based in Virginia and thus subject to US Courts. For example, they likely would have had less success enforcing a change on a .ir domain as the registry isn't located in US jurisdiction.

I bet that the US were not above to forcing the root DNS server providers to redirect the NS for .ir to some 3-letter-agency.

Re: Microsoft takes down No-IP.com domains

#127

> On June 26, the court granted our request and made Microsoft the DNS authority for the company’s 23 free No-IP domains, allowing us to identify and route all known bad traffic to the Microsoft sinkhole and classify the identified threats. Something about this bothers me. So the courts granted MS the rights to essentially take over No-IP's DNS in order to "identify" ... "bad traffic?" The implications of this are...…

https://en.wikipedia.org/wiki/Namecoin Distributed DNS is the only solution

And meshnets. DNS is just a layer on top of an already vulnerable IP stack.

IP can work between broad and anonymous mesh nets, but when an IP address can be resolved to a business or person it provides an exploit vector.

Re: Microsoft takes down No-IP.com domains

#128

> On June 26, the court granted our request and made Microsoft the DNS authority for the company’s 23 free No-IP domains, allowing us to identify and route all known bad traffic to the Microsoft sinkhole and classify the identified threats. Something about this bothers me. So the courts granted MS the rights to essentially take over No-IP's DNS in order to "identify" ... "bad traffic?" The implications of this are...…

https://en.wikipedia.org/wiki/Namecoin Distributed DNS is the only solution

So malware authors will be able to operate with impunity? As in all things, the solution is somewhere in the middle.

Re: Microsoft takes down No-IP.com domains

#129

According to Reuters, Microsoft is only sending traffic from computers that are infected with malware to Microsoft instead of No-IP. http://uk.reuters.com/article/2014/06/30/us-cybercrime-micro... That may still make people uncomfortable, but it seems much less egregious than Microsoft taking control of No-IP's domains, which is what this press release implies. Edit: the reuters article is in error here, not the Micr…

Microsoft has been doing more and more of this stuff lately, and it does start to worry me quite a bit. The last time they worried me was when "Microsoft shut down a million-strong Tor botnet, by uninstalling Tor from the computers ". I don't want Microsoft to have that kind of power, let alone use it. Worse yet, they make it sound like it's some kind of PR win for them. "Microsoft the hero, takes down evil network".…

It is almost like giving one company monopoly control of the personal computer industry through a proprietary OS nobody can audit might not be the best plan.

Re: Microsoft takes down No-IP.com domains

#130
post #65

And I was wondering, why did my no-ip.biz subdomain stop working…

So they are not even forwarding legitimate traffic? Did they just take the entire company down?

It looks like it to me - I have personal services running through them as well and my stuff stopped working last week. Of course, I also had multiple concurrent hardware failures, so I was assuming it was just that.
Post reply on HN