discuss AT lists.opennicproject.org
Subject: Discuss mailing list
List archive
Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK
Chronological Thread
- From: overthefalls <overthefalls AT opengroupware.ch>
- To: discuss AT lists.opennicproject.org
- Subject: Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK
- Date: Wed, 01 Sep 2021 18:04:19 -0600
I think you misunderstood the request. My understanding is the request
was to traceroute *a domain that you say points to facebook or
whatever*.
If I understand correctly, you're saying that 185.121.177.177 and
169.239.202.202 are poisoning your DNS requests.
What domains specifically?
Where does each domain point specifically?
To execute the test, point your DNS back to either of those opennic dns
servers and then I would suggest running the command "host domainname",
record the IP that is reported for that domainname, and then run a
traceroute to the domainname and see if it ends at the correct IP
address.
On Wed, 2021-09-01 at 16:48 -0700, Se7en wrote:
> On 21-09-02 01:34:47, Lennart Seitz wrote:
> > This IP is not part of the OpenNIC Project, see
> > https://servers.opennicproject.org/
> >
> > The only Anycast DNS is 134.195.4.2
>
> Your own wiki which is at <https://wiki.opennic.org/> lists the two
> Anycast Servers (IPv4) as 185.121.177.177 and 169.239.202.202. I have
> been using these two servers for years. You are now claiming that
> these are not OpenNICProject's Anycast servers, and are not part of
> the OpenNICProject? The information is contradictory and bizarre.
>
> If I have been using these two servers for several years, per the
> OpenNICProject's Wiki, who is the owner of these servers? Has my data
> been monitored this entire time? Have I been victim of a MITM since
> 2016?
>
> This is a major problem, and is most likely news to the majority of
> your userbase.
>
>
-
Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK
, (continued)
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Lennart Seitz, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Se7en, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Se7en, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Lennart Seitz, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, eric, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Se7en, 09/02/2021
- Re: [opennic-discuss] *** SPAM *** Re: [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Lennart Seitz, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Se7en, 09/02/2021
- Re: [opennic-discuss] *** SPAM *** Re: [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, mail, 09/02/2021
- Re: [opennic-discuss] *** SPAM *** Re: [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Lennart Seitz, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, Se7en, 09/02/2021
- Re: [opennic-discuss] [URGENT] [ROUND-ROBIN] DNS POISONING/POSSIBLE MITM ATTACK, overthefalls, 09/02/2021
Archive powered by MHonArc 2.6.24.