• About
    • History of Dallas SEO
    • SEO Expert Witness Services
  • Contact
  • Topics
    • Bing
    • Blogging
    • Branding
    • Domain Names
    • Google
    • Internet Marketing
    • Link Building
    • Local Search
    • Marketing
    • Public Relations
    • Reputation Management
    • Search Engine Marketing
    • Search Engine Optimization
    • Search Engines
    • Social Media
    • Tech
  • Advertise
  • Email Newsletter

Bill Hartzer

Bill Hartzer on Search, Marketing, Tech, and Domains.

SEMrush

Home » Domain Names » ICANN Hacked

ICANN Hacked

Posted on December 17, 2014 Written by Bill Hartzer

icann-hacked

ICANN, the Internet Corporation for Assigned Names and Numbers organization that oversees internet domain names, has been hacked. In late November 2014 they were targeted with a spear phishing attack, and then this month they discovered that the compromised credentials were used to access other ICANN systems besides email. This included the Centralized Zone Data System.

In email I received today (because I have access to the Centralized Zone Data System), ICANN explained the situation.

The attacker obtained administrative access to all files in the CZDS. This included copies of the zone files in the system, as well as information entered by users such as name, postal address, email address, fax and telephone numbers, username, and password.

If you have access or have had access to the Centralized Zone Data System, then your account has been disabled and you’ll need to obtain a new password in order to access the CZDS.

The email sent out be ICANN is below:

From: customerservice@icann.org
Date: December 16, 2014 at 11:38:19 PM CST
To: XXXX@billhartzer.com
Subject: ACTION REQUIRED: CZDS Security Disclosure
Reply-To: customerservice@icann.org

ACTION REQUIRED: CZDS Security Disclosure

ICANN is investigating a recent intrusion into our systems. We believe a “spear phishing” attack was initiated in late November 2014. It involved email messages that were crafted to appear to come from our own domain being sent to members of our staff. The attack resulted in the compromise of the email credentials of several ICANN staff members.

In early December 2014 we discovered that the compromised credentials were used to access certain ICANN systems including the Centralized Zone Data Service (CZDS).

You are receiving this notice because the attacker obtained administrative access to all files in the CZDS including copies of the zone files in the system. The information you provided as a CZDS user might have been downloaded by the attacker. This may have included your name, postal address, email address, fax and telephone numbers, and your username and password. Although the passwords were stored as salted cryptographic hashes, we have deactivated your CZDS password (and API key if applicable) as a precaution. Additional information about the attack is included in an announcement that is posted at https://www.icann.org/news.

In order to continue using CZDS, please visit http://czds.icann.org and follow the instructions there to request a new password. We suggest that you take appropriate steps to protect any other online accounts for which you might have used the same username and/or password.

This notice was not delayed as a result of a law enforcement investigation. Earlier this year, ICANN began a program of security enhancements in order to strengthen information security for all ICANN systems. We believe these enhancements helped limit the unauthorized access obtained in the attack. Since discovering the attack, we have implemented additional security measures.

We are providing information about this incident publicly, not just because of our commitment to openness and transparency, but also because sharing of cybersecurity information helps all involved to assess threats to their systems.

If you would like further assistance or information, you may contact us by email to customerservice@icann.org or by telephone at +1-424-277-3192 or U.S. toll-free at +1-800-401-1703.

Thank you for your attention to this. We sincerely regret any inconvenience or concern this incident may cause you.

ICANN Registry Services

The Centralized Zone Data Service is service that provides to the Zone Files provided by participating Top Level Domains (TLDs). The zone files list the domain names that have been registered. In order to get access to the CZDS, you must explain your need for the data and what you will do with it.

Filed Under: Domain Names

SEMrush

About Bill Hartzer

Bill Hartzer is CEO of Hartzer Consulting, an SEO Consulting firm that includes services such as search engine optimization, technical SEO audits, domain name consulting, and online reputation management. As an SEO Expert, Mr. Hartzer frequently serves as an SEO Expert Witness and Domain Name Expert Witness in legal cases worldwide.

Recent Posts

  • ChatGPT Versus Google Bard: Which is Better? March 22, 2023
  • All Domain Names Need SSL: Parked Domains Are Losing Traffic, Revenue March 17, 2023
  • Google is Finally Sunsetting Google Glass March 16, 2023
  • Microsoft Teams Free Classic Shutting Down April 12, 2023 February 21, 2023
  • GoDaddy Customer Loses Domain Name Due to Auto Renew Fail February 9, 2023
  • dotDB is Not Shutting Down February 1, 2023
  • Someone Stole My Domain Name: Here’s What You Do January 4, 2023
  • Web Hosting Services Market to Grow to $254.86 Billion by 2029 December 13, 2022
  • This SEO Blog Post Was Written by ChatGPT December 8, 2022
  • Facebook Rolling Out Facebook Articles December 7, 2022
  • Doing SEO is Better Than… December 6, 2022
  • Tucows and GoDaddy Report Q3 2022 Results November 6, 2022
  • How to Measure App Events Sourced by Organic Search and SEO September 20, 2022
  • Google Allegedly Eavesdrops and Monitors the Brain 24 hours a Day to Control Humanity September 14, 2022
  • Why You Shouldn’t Hire SEOs Based on An Email September 13, 2022
  • Global SEO Market to Reach $122.11 Billion by 2028 September 9, 2022
  • Bluehost Launches New Commerce Solutions for WordPress September 8, 2022
  • Which CMS? How to Choose the Best CMS for Your Purposes August 29, 2022
  • Accidental SEO Manager: Interview with Ash Nallawalla August 15, 2022
  • Sometimes Google Isn’t Family Friendly August 1, 2022

US Agency Awards Judge

DFWSEM logo

Bill Hartzer is a Brand Ambassador for:



Industry Friends

I Love SEO
WTFSEO
SEO By the Sea
Jeff Lenney
Jeff Gabriel
Phil Drinkwater
Dixon Jones
Brian Hartzer
Navah Hopkins
DNAccess

Connect With Bill Hartzer

Bill Hartzer on Twitter
Bill Hartzer on Instagram
Hartzer Consulting on Facebook
Bill Hartzer on Facebook
Bill Hartzer on YouTube

Categories

  • Advertising (19)
  • Bing Search Engine (6)
  • Blogging (42)
  • Branding (12)
  • Domain Names (212)
  • Google (237)
  • Internet Marketing (25)
  • Internet Usage (85)
  • Link Building (53)
  • Local Search (39)
  • Marketing (182)
  • Marketing Foo (30)
  • Pay Per Click (3)
  • Podcast (18)
  • Public Relations (8)
  • Reputation Management (9)
  • Search Engine Marketing (44)
  • Search Engine Marketing Events (48)
  • Search Engine Marketing Firms (19)
  • Search Engine Marketing Jobs (33)
  • Search Engine Optimization (164)
  • Search Engines (204)
  • Social Media (192)
  • Tech (7)
  • Web Analytics (17)
  • Webinars (1)

Note: All product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only, and are mentioned only to help my readers. All other trademarks cited herein are the property of their respective owners. Use of these names, logos, and brands does not imply endorsement.




Hartzer Consulting



Website, Content, and Marketing by Hartzer Consulting, LLC.

Copyright © 2023 ·