Network Solutions Hit With DDoS
New submitter Landy DeField was the first of many of write in about Network Solutions' website and DNS outage: "If your website does not load this morning you need to ask yourself do we use Network Solutions? Because all of their servers are all currently down. You can confirm this by visiting this site."
The only solid information from Network Solutions is a post on their Facebook page: "Network Solutions is experiencing a Distributed Denial of Service (DDOS) attack that is impacting our customers as well as the Network Solutions site. Our technology team is working to mitigate the situation. Please check back for updates." There have been several reports that the outage is causing hosted DNS to fail, leading to a number of unresolvable websites.
I do not use Network Solutions DNS service. I use Google's, which is almost always up.
Probably all those cheeky sales strategies like auto-renewal at any price without confirmation. A free email box that turns into a paid one and can only be cancelled with a support ticket. Shit like that certainly annoys me.
that the hosted DNS is down.
This article popped up as I was recreating a zone because of it, best to be off of their hosted DNS anyway.
Wow, sent an e-mail as suggested when clicking on "use classic" banner, and got a fast response that addressed my msg
Everyone is in luck: June 21st, 2013, 07:09 GMT By Eduard Kovacs http://news.softpedia.com/news/LinkedIn-Outage-Caused-by-DDOS-Attack-on-Network-Solutions-362473.shtml --- This means, that on Sunday, you will all find out it was a DoS attack. This also means, on Sunday, if you visit that site you can also get the Powerball results which haven't been posted yet and all retire.
Don't post it here. Now they'll be Slashdotted as well.
tl;dr
they f'd up some high-profile sites a few weeks ago - wonder if they fired (or scapegoated) someone who's showing their appreciation?
DNS name resolution from Network Solutions' DNS servers seems to be functional for 50-60% of requests based on a small sample (resolution of hosts in domains I manage). The Website is back up.
No, no, you're not thinking; you're just being logical. --Niels Bohr
From isitdownrightnow.com
Last Down: 3 minutes ago
Networksolutions.com is UP and reachable.
The website is probably down just for you...
They've gotten hit by 3 Spamhaus blacklists since last fall and this is the second DDOS in around a month. After the last Spamhaus debacle a few weeks ago, there were so many angry posts on their blogs about it that they took the link to their blogs off their account manager page. Calling their customer service sh!++y is an affront to sh!++y customer service. When I called to find out what was going on in the last DDOS, I got an IVR message, "Sorry, we're too busy to take your call" to which I responded by typing www.godaddy.com into my Firefox browser. It loaded great.
On top of that, they reupped me for 3 years without my request or approval, but I didn't notice until 60 days had past. Already bought a year at GoDaddy and am moving as fast as I can. Hard to download your site when FTP times out all the time. Will file reports with the FTC & BBB once I've gotten off their servers.
If this were easy, they wouldn't need us to do it!
There have been several reports that the outage is causing hosted DNS to fail, leading to a number of unresolvable websites.
Confirmed here. DNS resolution was down for about an hour this morning for our domains registered with Network Solutions, no problems with domains registered elsewhere.
~ Whence do you come, slayer of men, or where are you going, conqueror of space?
I saw the outage this morn when I not only was having email issues but couldn't even access the NetworkSolutions.com page. Had to google their tech support # b/c of that & when I called, their message said, "Network Solutions is experiencing a system-wide Denial of Access Attack" which is affecting all web service. We are not taking calls at this time about this and are currently working on fixing the problem." About an hour later, it is back up and running. My email with them though has been having issues for two weeks with attachments and takes forever to attach something now only to say "error" once it uploads 100%. Too much trouble trying to use their system for my graphic arts co. due to this lately. Even though it kept saying "error" though, I just found out from my client that they actually DID receive my emails with attachments, however the N.S. site didn't record those emails as "sent" at all. Just as "error" after uploading.
so I hit reply to this subject and this page gives me title of "anonymous coward". LAME WEBSITE....won't be visiting here again. EVER
The irony all these fools running around warning us of dire consequences of having an open DNS servers while concurrently pushing DNSSEC.
In the last two decades the only progress of any kind made to fix these problems is sale of brute force mitigation services to those who can afford it.
Nobody is interested in fixing broken UDP protocols:
http://tools.ietf.org/html/draft-eastlake-dnsext-cookies-03
Nor are they interested in applying necessary anti-spoofing filters:
http://en.wikipedia.org/wiki/Ingress_filtering
Mitigation is apparently more profitable than spending money to fix what is broke.
Actually, it was probably just the slashdot post reporting the problem that caused it.
in.su, DDOS hits YOU!
This is a dns reflection/amplification attack. Its affecting most if not all hosting companies, and is limited to boxes with a known vulnerability in Bind. Why do so many people think this is only hitting netsol? Also, its been occurring for more than a week now and thoroughly documented. #GoodAdminsReadAdvisories
They were trying to repair it.
Don't fight for your country, if your country does not fight for you.
If your website does not load this morning you need to ask yourself do we use Network Solutions?
Wait, is that we meaning you, or we meaning me? I know you means me, because it's me you're talking to. I'm just not sure who we is. Are.
systemd is Roko's Basilisk.
I get to them faster (local off TRUE SSD DDR2 Gigabyte IRAM 4gb PCIExpress ramdisk card speed of access/seek sub ms into low ns), & get past DNS failures, like this one, via:
APK Hosts File Engine 9.0++ 32/64-bit:
http://start64.com/index.php?option=com_content&view=article&id=5851:apk-hosts-file-engine-64bit-version&catid=26:64bit-security-software&Itemid=74
My top 20 sites favorites where I spend 95%++ or better of my time are in mine @ the topmost 20 entries - this equals or exceeds DNS indexing up to ~2-3 million++ record entries... I also get local seek/read & faster once cached into memory (either by local dns caching client services or with large hosts files, the local kernelmode diskcaching subsystem - keeps it ALL in Ring 0/RPL 0/kernelmode with the TCP/IP stack!). I checked my browser histories, firewall logs (software & router), etc., to determine them (knew them anyhow, I am ME, right? Right!).
Sub ~4% of the time? I use DNS, but specialized secured filtered ones vs. malware/spam/phishing etc. like OpenDNS, Comodo DNS, ScrubIT DNS, & others like them. Rare. Part of why I use news aggregator sites. They help not having to hop all over the place.
* Not only does it do more than AdBlock ('souled-out' 2 Google) & Ghostery (advertiser owned - to me, that's a fox guarding a henhouse) in speeding you up, AND blocking ads (plus known maliciously coded sites or malware serving servers etc.), but it makes you more RELIABLE, this way in cases like this also.
APK
P.S.=> Other major problems in DNS are that it's 99% unpatched out there vs. the Kaminsky redirect poisoning flaw, worst of all @ the ISP level, but also it gets "taken advantage of" in its very nature by FastFlux &/or Dynamic DNS utilizing bots, like mad, recycling-reusing host-domain names of malware spewing sites like mad (hard to kill, can live again/reincarnate - IP addressed malware is easy to kill by comparison, being stationary/static, vs. dynamic)...
... apk
As opposed to the royal We. You understand now, Oui?
ooooh the comments on Facebook are giving them hell. I have to agree, the latest news comes from Facebook? tsk tsk not how to treat your customers.
*Think globally~Dream universally*
I don't & bypass DNS completely as shown here http://tech.slashdot.org/comments.pl?sid=3985079&cid=44310431 also getting around fastflux & dynamic dns using botnets/malwares etc. too (since they're blocked in my custom hosts file too: "2-for-the-price-of-1" bonus!), & I do name resolution faster, locally (from a True SSD no less), in kernelmode too cached in RAM & the native TCP/IP resolver driver in tcpip.sys does the rest, also in kernelmode (fastest there is): Who's the moron?
* :)
APK
P.S.=> Answer to that last question = Not I... lol!
... apk
Network solutions used to be one of the most evil companies around. I haven't heard about them for like 7 years. I'm certainly happy about this joyous news.
Netsol makes it difficult to add your own DNS records for your domain. So, I never pursued it. Regretting that now.
"... all of their servers are all currently down. You can confirm this by visiting [link]."
Very funny, guys. Kick'em while they're down.
Dear Slashdot: next time you want to mess with the site, add a rich-text editor for comments.
Our club's website is hosted by NetSol and our homepage was defaced yesterday. After 30+ minutes in the hold queue, I figured it was an issue on their side. Sure enough, the customer rep told me a bunch of their hosting servers suffered an intrusion and thousands of customers were similarly affected.
I never use my registrar's DNS, even though I like my registrar (Moniker) a lot.
Nor would I ever use a web hosting company's DNS.
It's safest to use third-party DNS.
Risks of single-sourcing registrar, DNS, and hosting:
- host/registrar goes out of business, or suffers a disaster. You now have no ability to switch to a different host until the situation is resolved through IANA and somebody else gets control of the registry records. If you use third-party DNS, while you now can't change to a different DNS provider (assuming registrar failure) you can still add new hosts to your DNS and can still move between hosts. You can survive a failure of any two of the three services and change providers.
- you have a dispute of some sort with your host (assuming single-sourcing with host). They now can hold your domain hostage for payment.
Keeping DNS/registrar/hosting all separate maximizes versatility and makes you more able to squirm out of unpleansant and unexpected situations.
Initial downmod to -1 showing end users how to be "proof" to this attack (topic) http://tech.slashdot.org/comments.pl?sid=3985079&cid=44310431
It works vs. this (& dns attacks of other types too) via a hosts file it produces (that yields many good added speed, security, reliability, & anonymity benefits beyond fixing this type of mishap) + what you said ( & I further it in that link) in many dns issues: Bigtime dns specific per redirect poisoning (Kaminsky = nearest yours) + fastflux & dynDNS botnets abusing dns.
Nicer part's my program proofs you vs. this + gives more speed, security, reliability, anonymity, & "more 4 your money" you pay to be online & the program's 100% free!
Speeds you up 2 ways @ IP stack level + diskcache subsystems (kernelmode fast not usermode redundant slower browser addons), secures you (vs. online malicious content of many kinds (specifics = fastflux + dynDNS using botnets here topic being dns issues)), more anonymity (vs dnsbl's & dns request logs - server admins can thank me 4 their rigs working less too - triple bonus), & finally - proofs you vs. DNS outage (& redirect poisoning attacks too)!
* Nicest part = it works w\ DNS perfectly (operates beneath it even on servers) shoring up its faults like this - A security solution that adds speed too!
"The Premise is quite simple: Take something engineered by nature and reprogram it to work for the body, rather than against it" - Dr. Alice Krippen, 'I AM LEGEND'
APK
P.S.=> Link went -1 to 0 "offtopic" - wtf? It proofs folks to this attack! That's 'offtopic'?? Now +1 "Interesting"! Anyhow - I use something old (hosts) to supplement DNS & overcome its flaws + much noticeably faster/safer/more reliable/more anonymous online! It works 4 all the above & more. Couldn't believe I was downmodded w\ a working solution! You use irony = why I sound off here per rating wildly moving on my post above & I liked your links too (thanks again for them)
... apk
So if DNS dies You get where you wish anyhow 'sans' dns (like this article today as a 'prime example thereof') since hosts completely bypass dns local or remote (& certainly is better than trying a downed dns as any good, lol, since they're DOWN for the count!). Hosts = L1 cpu cache here as always & by default.
Using a custom hosts file you're YOUR own local resolver via tcpip.sys lookup preferential order default & best functionality (totally bypassing the need for remote or local dns using custom hosts files with favs hardcoded)... period.
* :)
Dns outages don't affect that - so, sure it does (works great + much more in added speed, security, reliability, & even more anonymity to a degree!). Especially for my hardcoded favorites (or blocked known malicious ones).
APK
P.S.=> "The Premise, is quite simple: Take something designed by nature, & reprogram it to make it work for the body, rather than against it" - Dr. Alice Krippen, 'I AM LEGEND'...
... apk
http://tech.slashdot.org/comments.pl?sid=3985079&cid=44315701
APK
P.S.=> You fail, & you obviously do NOT know what you're talking about here... apk
"Rinse, Lather, & Repeat" stupid ac troll -> http://tech.slashdot.org/comments.pl?sid=3985079&cid=44315701
Give us a break: Disprove what the program does here http://start64.com/index.php?option=com_content&view=article&id=5851:apk-hosts-file-engine-64bit-version&catid=26:64bit-security-software&Itemid=74
* I love it - since I know you simply can't... lol!
APK
P.S.=> You're a ridiculous troll, & but also a total coward as well... no balls: You came in here days later, downmodding unjustly, & trolling - but you just CAN'T DISPROVE WHAT THE RESULTS OF MY PROGRAM ARE stated in that link above - lmao, every single time, that's all a WORM like you, has... hilarious - I am laughing @ you, as always!
... apk
Off topic defeated technically challenged troll that you are http://tech.slashdot.org/comments.pl?sid=3985079&cid=44353117 since you RAN there ("Run, Forrest: RUN!!!", lol) & also here http://tech.slashdot.org/comments.pl?sid=3985079&cid=44315701
* You have issues!
LMAO, what else can I say? You're unable to face up to a challenge I put your way to disprove my points on customhosts files benefits to users in added speed, security, reliability, & even anonymity that I list at my app's hosted page, due to your technical incompetence!
(Yet coming back for more, lol, how many days/weeks later for "the last word"?)
APK
P.S.=> You're worse than a woman & obviously dumber than a box of rocks when it comes to the art & science of computing... & obviously a liar (we all know how it works, registered lusers can post ac after downmodding by logging out to save cookie state here. It's obvious you downmodded me since you've made yourself look stupid and you run from a challenge, lol!
... apk
I'm definitely not the one with issues. Nice try, though. Keep typing :)
"Rinse, Lather, & Repeat" Forrest Gump troll -> http://tech.slashdot.org/comments.pl?sid=3985079&cid=44315701 - disprove it validly with facts.
Since "The Premise, is quite simple: Take something designed by nature, & reprogram it to make it work for the body, rather than against it" - Dr. Alice Krippen, 'I AM LEGEND'...
And, it certainly does in this case AND many others -> http://start64.com/index.php?option=com_content&view=article&id=5851:apk-hosts-file-engine-64bit-version&catid=26:64bit-security-software&Itemid=74
* :)
(Validly disprove the points I enumerate in the 2nd link, as well as my points in the 1st link above that are specific to THIS article here about the value of custom hosts files for added speed, security, reliability - especially vs. DNS faults in not being patched on 99% of them worldwide @ the ISP level worst of all vs. the Kaminsky bug redirection flaw + FastFlux & DynDNS tech utilizing botnets, and lastly even for added anonymity to an extent (vs. dns request logs + DNSBL's you may not like)).
Go for it - you can't do it, hence your "Run, Forrest - RUN!!!" b.s. & ac trolling...Fact (based on 100's of trolls like yourself using the same reprehensible tactics as yourself in the end out of "wounded pride" no doubt): Nobody can! Why? My theme of my LIFE "Fight the GOOD fight, every moment" -> http://www.youtube.com/watch?v=sp3zhgXDDSs
APK
P.S.=> It makes me feel like Good Will Hunting when he says "Look - maybe I don't want to sit around the rest of my life explaining shit to people... Do you know how EASY this is for me? Do you have any fucking idea how easy this is for me?? This is a fucking JOKE. & I'm sorry you can't do this: I really am because I wouldn't have to sit here and watch you fumble around & FUCK IT UP!" -> http://www.youtube.com/watch?v=AqoSxVf4qTY to the great mathematician he humbles with ease, despite his not having the same education.
... apk
As well as running from this -> http://tech.slashdot.org/comments.pl?sid=3985079&cid=44403287
APK
The opposite appears to be the case here (you ran) -> http://tech.slashdot.org/comments.pl?sid=3985079&cid=44405463
APK
You can't disprove my points on hosts http://tech.slashdot.org/comments.pl?sid=3985079&cid=44403287 in custom hosts files giving users added speed, added security, added reliability (as in this article specifically), & even added anonymity - face facts: You fail!
* You're just some mentally challenged troll, nothing more...
APK
P.S.=> I must have TRULY knocked the snot out of you @ some point - has to be that, since you act worse than a woman trying to 'get the last word" here & failing on that as well as being unable to disprove my points... apk