• About
    • History of Dallas SEO
    • SEO Expert Witness Service
  • Contact
  • Topics
    • Bing
    • Blogging
    • Branding
    • Domain Names
    • Google
    • Internet Marketing
    • Link Building
    • Local Search
    • Marketing
    • Public Relations
    • Reputation Management
    • Search Engine Marketing
    • Search Engine Optimization
    • Search Engines
    • Social Media
    • Tech
  • Advertise
  • Email Newsletter

Bill Hartzer

Bill Hartzer on Search, Marketing, Tech, and Domains.

traffic analysis tools

Home » Domain Names » ICANN Hacked

ICANN Hacked

Posted By Bill Hartzer on December 17, 2014at 2:34 pm

icann-hacked

ICANN, the Internet Corporation for Assigned Names and Numbers organization that oversees internet domain names, has been hacked. In late November 2014 they were targeted with a spear phishing attack, and then this month they discovered that the compromised credentials were used to access other ICANN systems besides email. This included the Centralized Zone Data System.

In email I received today (because I have access to the Centralized Zone Data System), ICANN explained the situation.

The attacker obtained administrative access to all files in the CZDS. This included copies of the zone files in the system, as well as information entered by users such as name, postal address, email address, fax and telephone numbers, username, and password.

If you have access or have had access to the Centralized Zone Data System, then your account has been disabled and you’ll need to obtain a new password in order to access the CZDS.

The email sent out be ICANN is below:

From: [email protected]
Date: December 16, 2014 at 11:38:19 PM CST
To: [email protected]
Subject: ACTION REQUIRED: CZDS Security Disclosure
Reply-To: [email protected]

ACTION REQUIRED: CZDS Security Disclosure

ICANN is investigating a recent intrusion into our systems. We believe a “spear phishing” attack was initiated in late November 2014. It involved email messages that were crafted to appear to come from our own domain being sent to members of our staff. The attack resulted in the compromise of the email credentials of several ICANN staff members.

In early December 2014 we discovered that the compromised credentials were used to access certain ICANN systems including the Centralized Zone Data Service (CZDS).

You are receiving this notice because the attacker obtained administrative access to all files in the CZDS including copies of the zone files in the system. The information you provided as a CZDS user might have been downloaded by the attacker. This may have included your name, postal address, email address, fax and telephone numbers, and your username and password. Although the passwords were stored as salted cryptographic hashes, we have deactivated your CZDS password (and API key if applicable) as a precaution. Additional information about the attack is included in an announcement that is posted at https://www.icann.org/news.

In order to continue using CZDS, please visit http://czds.icann.org and follow the instructions there to request a new password. We suggest that you take appropriate steps to protect any other online accounts for which you might have used the same username and/or password.

This notice was not delayed as a result of a law enforcement investigation. Earlier this year, ICANN began a program of security enhancements in order to strengthen information security for all ICANN systems. We believe these enhancements helped limit the unauthorized access obtained in the attack. Since discovering the attack, we have implemented additional security measures.

We are providing information about this incident publicly, not just because of our commitment to openness and transparency, but also because sharing of cybersecurity information helps all involved to assess threats to their systems.

If you would like further assistance or information, you may contact us by email to [email protected] or by telephone at +1-424-277-3192 or U.S. toll-free at +1-800-401-1703.

Thank you for your attention to this. We sincerely regret any inconvenience or concern this incident may cause you.

ICANN Registry Services

The Centralized Zone Data Service is service that provides to the Zone Files provided by participating Top Level Domains (TLDs). The zone files list the domain names that have been registered. In order to get access to the CZDS, you must explain your need for the data and what you will do with it.

Filed Under: Domain Names

traffic analysis tools

Listen to "Digital Marketing with Bill Hartzer" on Spreaker.

About Bill Hartzer

Bill Hartzer is CEO of Hartzer Consulting, LLC, an SEO Consulting firm that includes services such as search engine optimization, technical SEO audits, domain name consulting, and online reputation management.

Recent Posts

  • Andrew Muller on Testing Google Ads Using Facebook Ads January 15, 2021
  • Mike Rhodes from Web Savvy On Google Ads January 8, 2021
  • How to Opt Out of Google Analytics December 16, 2020
  • Majestic Just Changed SEO and Linking Forever December 15, 2020
  • Yext Consumer Search Trend Predictions for 2020 December 8, 2020
  • SearchBox Launches SearchAI SmartSuggest, SearchAI Answers and SearchAI Personalization December 7, 2020
  • Google Poly is Shutting Down December 2, 2020
  • Domain Name Brokers Put FFF.com and HHH.com Domains Up for Sale December 1, 2020
  • Google Webmaster Tools Moves Twitter Account November 11, 2020
  • Email Deliverability, Setting Up DMARC, DKIM, and SPF on Your Domain October 29, 2020
  • The Bing Search Engine is Now Microsoft Bing October 6, 2020
  • Beck Power on Building Authority on Social Media and Repurposing Content October 2, 2020
  • Naira Perez on Paid Media, and an Intro to Social Paid Media, and Audiences September 17, 2020
  • Fake Birth Date Used on Google and Apple Accounts Is on Credit Report August 17, 2020
  • What is Bill Hartzer Disease? July 20, 2020
  • Web Host Agents Sending Fake Invoices for Website Hosting July 17, 2020
  • Duane Forrester On Search Intent and Internal Site Search July 9, 2020
  • Google Loses Blogspot.In Domain Name July 8, 2020
  • Peter Leshaw on In-House Digital Marketing and Dashboards for Reporting July 2, 2020
  • Mark Traphagen on Schema, Schema Tools, and On Page SEO Tools June 29, 2020

DFWSEM logo

Bill Hartzer is a Brand Ambassador for:



Industry Friends

WTFSEO
SEO By the Sea
Jeff Lenney
Jeff Gabriel
Phil Drinkwater
Dixon Jones

Connect With Bill Hartzer

Bill Hartzer on Twitter
Bill Hartzer on Instagram
Hartzer Consulting on Facebook
Bill Hartzer on Facebook
Bill Hartzer on YouTube

Categories

  • Advertising (19)
  • Bing Search Engine (6)
  • Blogging (42)
  • Branding (12)
  • Domain Names (197)
  • Google (228)
  • Internet Marketing (24)
  • Internet Usage (84)
  • Link Building (52)
  • Local Search (38)
  • Marketing (176)
  • Marketing Foo (30)
  • Pay Per Click (1)
  • Podcast (8)
  • Public Relations (8)
  • Reputation Management (9)
  • Search Engine Marketing (44)
  • Search Engine Marketing Events (47)
  • Search Engine Marketing Firms (19)
  • Search Engine Marketing Jobs (33)
  • Search Engine Optimization (156)
  • Search Engines (202)
  • Social Media (187)
  • Tech (7)
  • Web Analytics (16)




Note: All product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only, and are mentioned only to help my readers. All other trademarks cited herein are the property of their respective owners. Use of these names, logos, and brands does not imply endorsement.




Hartzer Consulting



Website, Content, and Marketing by Hartzer Consulting, LLC.

Copyright © 2021 by Bill Hartzer and Hartzer Consulting, LLC.

Disclaimer - Privacy Policy - Terms of Use
Go to mobile version