Rogue WHOIS server gives researcher superpowers no one should ever have

siteadmin September 11, 2024

Benjamin Harris, the CEO and founder of watchTowr, acquired the ability to generate counterfeit HTTPS certificates, track email activity, and execute code, by registering the expired domain, dotmobilregistry.net, which was once the official home of the authoritative WHOIS server for .mobi. His server received 2.5 million queries in five days, including from governments, universities, certificate authorities, and the providers of online security tools.

Source: arstechnica.com - Read more