Showing posts with label DNS Abuse. Show all posts
Showing posts with label DNS Abuse. Show all posts

2017-09-24

News Review: ICANN Interactive Webinar, Editor's Comment on DNS Abuse

News Review | ©2016 DomainMondo.com
Domain Mondo's weekly internet domain news review (NR 2017-09-24) with analysis and opinion: Features • 1)  ICANN Interactive Webinar on DNS Abuse Sept 25, 2)Other ICANN news a. Editor's Comment on DNS Abuse in gTLDs, b.Latest on Spain vs .CAT, c. ICYMI RegistrarSG to ICANN Letter, 3) Names, Domains & Trademarks: Please No Emoji in Domains, 4) ICYMI Internet Domain News: Internet Censorship, 5) Most Read Posts.

1) ICANN Interactive Webinar on DNS Abuse September 25
ICANN WEBINAR: Compliance & Consumer Safeguard Overview | ICANN.org: ICANN will host an interactive webinar on 25 September 2017 to discuss Compliance and Consumer Safeguard matters within ICANN’s remit, including:
  • Review and discuss existing safeguards within ICANN’s contracts and By-laws.
  • Identify types DNS abuse that may fall within ICANN’s remit.
  • Discuss voluntary efforts to address abuse within the DNS.
  • Consider possible topic(s) for discussion during a session at ICANN 60.
"This webinar will allow for an open discussion on these topics as well as any other related issues raised by members of the community. Hosted by ICANN’s Contractual Compliance and Consumer Safeguards team, the webinar will also include representatives from ICANN’s Office of the Chief Technology Officer and the Global Domains Division."--ICANN

Webinar Date & Time25 September 2017, 1500-1600 UTC | time convert 11am EDT (US)
Join via Adobe Connect: https://participate.icann.org/safeguardsandcompliance/
Dial-In Conference Number(s)--Participant Code: 1941584829:
  • US (Toll): 1-605-475-5603
  • US (Toll): 1-712-770-4202
  • US (Toll Free): 1-888-619-1583
  • Canada, Montreal (Local): +1 514 669 5944
  • Canada, Toronto (Local): +1 647 426 9168
  • Additional access numbers: here
The webinar will be conducted in English. Recordings will be published here. More info:

2) Other ICANN news
a. DomainMondo.com Editor's comment (pdf) re: Statistical Analysis of DNS Abuse in gTLDs (SADAG) Report, submitted 19 Sep 2017 (comment period now extended to 27 Sep 2017), excerpt:

"Conclusion: With its 2012 round of expanding gTLDs from just 22 to more than 1200, ICANN has made a mess of the DNS and given multistakeholderism a bad name. And it’s not as if ICANN wasn’t warned, repeatedly, as noted hereinabove. No, this disaster wasn’t any force majeure, but a disaster of ICANN’s own making, founded upon a mixture of arrogant power and greed:
"I really can’t see a legitimate upside where new benefits [of the new gTLDs] outweigh costs, and everyone I mention this to feels the same way. People just shake their heads. It’s all about the money. They [ICANN] are creating these extensions because they can."--University of Pennsylvania Wharton School marketing professor Peter Fader, co-director of the Wharton Customer Analytics Initiative (source: Knowledge@Wharton May 21, 2014).
"ICANN’s new gTLDs program is a systemic failure of both the organization and the “ICANN community”—they need to own it and be held accountable. It is as important to understand “how we got here” as “what happened.” The failed ICANN leadership that got us into this mess includes Peter Dengate Thrush (former ICANN Board Chairman), Steve Crocker (ICANN Board member and Chairman), ICANN ex-CEOs Rod Beckstrom and Fadi Chehade, former ICANN Chief Strategy Officer Kurt Pritz (“architect of ICANN's new gTLD program”), and lastly but not least, Akram Atallah, interim ICANN CEO (twice) and President of ICANN’s “Global Domains Division.”" (emphasis added)

Full comment embedded below. Other comments submitted may be read here.


b.  Latest on Spain vs .CAT--gTLD .CAT domain names judicial seizure warrant
.CAT statement 22 Sep 2017: Our Director of Innovation and Information Systems has been released | fundacio.cat"... Pep Masoliver, has been released on September 22, after more than 60 hours of detention, accused with charges of embezzlement, prevarication and disobedience ..." (emphasis added)

Background: Intervention at Fundació puntCAT's headquarters | fundacio.cat 20 Sep 2017: "Fundació puntCAT wants to express its utmost condemnation, indignation and reprobation for the actions that it has been suffering lately with successive judicial mandates, searches and finally the arrest of our Director of Innovation and Information Systems, Pep Masoliver ..." (emphasis added)

See also 17 September 2017 Letter from Fundació puntCAT CEO Eduard Martin Lineros to ICANN CEO Göran Marby (pdf) published by ICANN 20 September 2017, embed below:
See also: Spain and Catalonia Wrestle Over .Cat Internet Domain - The New York Times"Given the web’s rich cat history, you’d think that domain names ending in .CAT would be another online feline gold mine."--For the love of god, not everything is about cats | theoutline.com: "The foundation that administers the .CAT domain for Catalonians just got raided by the Spanish police, but all the media wants to talk about is cats."

UPDATE--Catalonia Police Reject Madrid Orders: Barring Invasion, the Vote Will Take Place October 1st--"Given the importance of the story, Western media is amazingly silent. Stories are few and far between."--MishTalK.com.

c.  ICYMI: ICANN’s “Proposal Regarding Feasibility Analysis of Cross-Field Address Validation Services.”--Letter from Graeme Bunton to Jennifer Gore | ICANN.org embed below, highlighting added:
(Editor's Note: Graeme Bunton is manager of public policy at Tucows, and was elected as Chair of the Registrar Stakeholder Group in July 2016. Jennifer Gore is ICANN Director, Registrar Services & Engagement since July, 2016; prior to that she was employed by Web.com.)

3) Names, Domains & Trademarks
•  Emoji in Domains? Don't, just don'tWorth Repeating Again--SAC 095 | SSAC Advisory on the Use of Emoji in Domain Names | ICANN.org--Advisory from the ICANN Security and Stability Advisory Committee (SSAC) 25 May 2017 (pdf): "... the practical implication is that domain names with emoji will not be accepted or processed consistently by applications ... Currently, it is already difficult to get people to accept the new labels that have appeared with IDNs and the new generic TLD (new gTLDs) program. Adding emoji to domain name labels will only make this problem worse ... Recommendation 1: Because the risks identified in this Advisory cannot be adequately mitigated without significant changes to Unicode or IDNA (or both), the SSAC recommends that the ICANN Board reject any TLD (root zone label) that includes emojiRecommendation 2: Because the risks identified in this Advisory cannot be adequately mitigated without significant changes to Unicode or IDNA (or both), the SSAC strongly discourages the registration of any domain name that includes emoji in any of its labels. The SSAC also advises registrants of domain names with emoji that such domains may not function consistently or may not be universally accessible as expected ..." (emphasis and link added)

•  IT Contractor Convicted of Wire Fraud for Defacing Website of Arizona Company | USAO-AZ | US Department of Justice | justice.gov"... According to documents filed in this case and statements made in court, [Defendant] Tso provided information technology (“IT”) services for a company located in Phoenix, Ariz. Tso subsequently used the company’s account information to make changes to the company’s website. These changes prevented the company’s employees from using their email accounts and redirected the company’s homepage to a blank page. Tso then offered to return everything to normal for $10,000. When the company refused to pay the requested amount, Tso redirected the company’s homepage to a pornographic website. Visitors to the company’s website were redirected to the pornographic website for several days before the website was returned to normal ..."

 IP in the Digital Age: Protecting Against Domain Name and Social Media Infringement | New Jersey Law Journal | njlawjournal.com

•  Don’t Fall for a Scam: Trademark Owners Targeted | Womble Carlyle Sandridge & Rice, LLP - JDSupra.com"These scamming organizations, which often use names that resemble government agencies, will obtain freely accessible information regarding a registration or application ... and then create an official-looking letter or invoice seeking payment regarding the referenced trademark."

4) ICYMI Internet Domain News 
•  Internet CensorshipThe Terrifying Power of Internet Censors | NYTimes.com"Because of the precise nature of Cloudflare’s business, and the scarcity of competitors, its role censoring internet speech is not just new, it’s terrifying."

Iceland authorities weighing options after neo-Nazi site registers there | ArsTechnica.com“What we worry about is the reputation of the .is domain,” ISNIC CEO Jens Pétur Jensen told the Reykjavik Grapevine. “ISNIC does not want to have the reputation that we’re a safe haven for criminals.”
See also: Why many Russians have gladly agreed to online censorship | osu.edu and Iran: Policing the Internet and Social Media | AEI.org.

  • China's Great FirewallChinese man jailed for helping others break Internet firewall | newsbytesapp.comSee also U.S. seeks partners to help Internet users evade foreign censors--bgov.com: "The Office of Internet Freedom (OIF), part the U.S. Broadcasting Board of Governors, is looking for vendors that have systems and software to counter internet censorship by foreign governments, according to a notice published Sept. 6."--helping dissident groups set up web proxies and secure email.

•  Net NeutralityFCC Chair’s “chat” with tech execs draws protest | Electronic Frontier Foundation | eff.org .See also: "... the FCC blatantly ignored the evidence that the agency had in its possession throughout its push to scrap the vital consumer protections established by the Open Internet Order," NHMC Policy and Legal Affairs Director Carmen Scurato said in a press release last week."  See also Technology is outsmarting net neutrality | AEI.org.

•  EFF Resigns from W3C over EMEAn open letter to the W3C Director, CEO, team and membership | Electronic Frontier Foundation | eff.org: ".... The W3C process has been abused by companies that made their fortunes by upsetting the established order, and now, thanks to EME, they’ll be able to ensure no one ever subjects them to the same innovative pressures. So we'll keep fighting to keep the web free and open. We'll keep suing the US government to overturn the laws that make DRM so toxic, and we'll keep bringing that fight to the world's legislatures that are being misled by the US Trade Representative to instigate local equivalents to America's legal mistakes. We will renew our work to battle the media companies that fail to adapt videos for accessibility purposes, even though the W3C squandered the perfect moment to exact a promise to protect those who are doing that work for them. We will defend those who are put in harm's way for blowing the whistle on defects in EME implementations. It is a tragedy that we will be doing that without our friends at the W3C, and with the world believing that the pioneers and creators of the web no longer care about these matters. Effective today, EFF is resigning from the W3C. Thank you"--Cory Doctorow, Advisory Committee Representative to the W3C for the Electronic Frontier Foundation (emphasis added).

•  Internet FreedomHow supporting internet freedom in Cambodia makes America great | R Street Institute | RStreet.org

Internet Regulation: FEC Dems renew bid to regulate Internet, Drudge, 'not done fighting' | washingtonexaminer.com

•  Internet Shutdowns: Togo latest country to lose web access as regimes increasingly shut down Internet to control protests | theglobeandmail.com

•  China Connecting The Unconnected: "... as new players enter the race to connect the 4 billion people who remain offline, new questions are emerging about who is providing that connection and what their agenda is. As China’s interest in global development has grown, so too has its influence in the telecommunications sector, with two companies in particular — the privately owned Huawei and state owned ZTE — making up the majority of China’s efforts to connect the unconnected."--China's role in the race to connect the next billion | Devex.com.

5) Most read posts (# of pageviews Sun-Sat) this past week on DomainMondo.com: 
1.  News Review: ICANN New gTLDs Declining, But Other Domains Growing
2.  Hurricane Maria: 2017 Hurricane Season, Satellite Views .... LIVE Feeds
3.  EU Antitrust & Competition Policy, EU Commissioner Margrethe Vestager
4.   MacroView: Election in Germany (video), ECB, EU, Spain, IMF & Greece
5.  Jeff Bezos Empire: Amazon $AMZN, Blue Origin, WaPo, Bezos Expeditions

-- John Poole, Editor, Domain Mondo 

feedback & comments via twitter @DomainMondo


DISCLAIMER

2017-09-10

News Review: ICANN Webinars On DNS Abuse in ICANN's New gTLDs

News Review | ©2016 DomainMondo.com
Domain Mondo's weekly internet domain news review (NR 2017-09-10) with analysis and opinion: Features •  1) ICANN Webinars On DNS Abuse in ICANN's New gTLDs2) Other ICANN news: a. .WEB Litigation,  b..AFRICA Litigation, c. Quote of the Week: 'no such thing as Conflict of Interest' at ICANN, 3) Names, Domains & Trademarks: Deadwood Trademark Registrations, 4) ICYMI Internet Domain News, 5) Most Read Posts.

1) ICANN Webinars On DNS Abuse in ICANN's New gTLDs
Webinar: "Statistical Analysis of DNS Abuse in gTLDs" (SADAG) Study | ICANN.org: Webinar dates and how to attend:
Date: 13 September 2017  |  Time: 14:00-15:30 UTC (time convert) 10am EDT (US)
Join via Adobe Connect or Dial-In  Participant Code: 1429847649
Date: 14 Sept 2017  |  Time: 04:00-05:30 UTC (time convert) Sept 13 9pm PDT (US)
Join via Adobe Connect or Dial-In  Participant Code: 1429847649
UPDATE Webinar Video Replay:
Slides (pdf) embed below:

Statistical Analysis of DNS Abuse in gTLDs (SADAG) Report | ICANN.org Public Comment period closes 19 Sep 2017 23:59 UTC extended to 22 Sep 2017 23:59 UTC 27 Sep 2017 23:59 UTC.

Recordings (in English) of the webinars are also published on New gTLD DNS Abuse Review | newgtlds.icann.org. More info here.

For background: Report: ICANN's New gTLDs As Global DNS Malware | DomainMondo.com

2) Other ICANN news

a. New gTLD .WEB Litigation
Ruby Glen, LLC [Donuts affiliate] v. ICANN | ICANN.orgPlaintiff's Opening Appellate Brief [(pdf) 30 August 2017. See also Plaintiff's Notice of Appeal Regarding Dismissal (pdf) 20 December 2016; Exhibit 1 (pdf); Exhibit 2 (pdf).

"Ruby Glen, LLC is a wholly owned subsidiary of Covered TLD, LLC. Covered TLD, LLC is a wholly owned subsidiary of Donuts Inc." (Appellant's Opening Brief, p.2, emphasis added)

Editor's noteAfilias, not Ruby Glen (Donuts), was the second-highest bidder (pdf) at the .WEB auction (pdf). So what's the point of the lawsuit and appeal? Reportedly spiteDonuts (Ruby Glen) apparently was betting on getting a private auction for .WEB from which it would have received more than $22 million as a "losing" bidder under ICANN's authorized "casino-like" private auctions. (Note that the biggest, and maybe the only, profits made thus far with new gTLDs, have been in "gambling" within the private auctions and getting the winning "sucker" to bid high.)

Instead, in the case of .WEB, due solely to the insistence of the winning bidder, the ICANN "last resort" auction for .WEB produced net proceeds of over $132 million for beneficent purposes in accordance with the Applicant Guidebook, as well as ICANN's mission and status as a 501(c)(3) non-profit public benefit corporation.
UrbanDictionary.com definition of "donut"--'Top Definition'--"An individual who is extremely stupid. Lacks intelligence and common sense."

b.  New gTLD .AFRICA Litigation
Plaintiff DCA (DotConnectAfrica Trust) Survives ICANN's Motion for Summary Judgment--excerpt of Order (embed further below):
"... any claims that do not lie in fraud or willful injury are barred by the Covenant [Not to Sue]. Those that do, are not [barred][p.5] .... The Court cannot therefore, find as a matter of law that ICANN did not defraud DCA by stating on the one hand it would follow its Bylaws and Articles of Incorporation in processing DCA's application, while on the other hand giving preference to ZACR's application throughout the process. CONCLUSION: For the foregoing reasons ICANN's motion for summary judgment is denied as to the second, third, fourth, fifth, and tenth causes of action. The motion is granted as to the remaining causes of action."[p.10] [Dated Aug 9, 2017](emphasis added)
Order on ICANN's Motion for Summary Judgment (pdf)(embed below)

See also Plaintiff DCA's first amended complaint (pdf) for second, third, fourth, fifth, and tenth causes of action.

c.  Quote of the Week [CCWG-AuctionProceeds] Conflict Of Interest"This is ICANN, where there is effectively no such thing as conflict of interest so long as you declare."--Evan Leibovitch (emphasis added)

3) Names, Domains & Trademarks
•  Deadwood Trademark RegistrationsTrademark Office Wants to Make It Easier to Cancel Registrations | TheIndianaLawyer.com"Trademark practitioners will tell you the U.S. Trademark Office has a deadwood problem ... the Trademark Office’s register is full of registrations for trademarks no longer in use (or in the case of some, never used) and no longer entitled to registration, often referred to as “deadwood registrations.” Fortunately, the Trademark Office has been listening and is developing strategies to help remove deadwood."

•  Facebook Moves to Seize Russian Domain Name facebook.ru | TheMoscowTimes.com: Facebook is demanding Russian payment system Zolotaya Korona hand over the domain name facebook.ru which it has held since 2005, Kommersant.ru reported Monday.

•  Criminal Cybersquatting
SecuringIndustry.com: US man arrested for fake clothing smuggling: "... a "sophisticated scheme" to import around 200 shipping containers of fake brand-name apparel from China into the US. Su Ming Ling (50), a former resident of Queens, New York, was arrested in California ... According to legal documents, Ling allegedly used several aliases between May 2013 and January 2017 to register and create numerous internet domain names and email addresses with the intention that they resembled the internet domain names of real US businesses ..."  See also Luxury Brands Just Got One More Reason to Hate the Internet: Spoofing | Adweek.com"New study reveals it's a bigger problem than many believed."

•  More CybersquattingGucci, Hermès, Chanel, Givenchy Among Top Brands Being Targeted by Cybersquatters | TheFashionLaw.com.

•   What Is DNS Hijacking? | WIRED.com: "... A hacker who's able to corrupt a DNS lookup anywhere in that chain can send the visitor off in the wrong direction, making the site [website] appear to be offline, or even redirecting users to a website the attacker controls ..."  See also How DNS TXT records can be used against enterprises | searchsecurity.techtarget.com.

•  Chinese Brand Names, Copycats, and Soundalikes | ChinaLawBlog.com

•  CybercrimeSEC chief says cyber crime risks are substantial, systemic | Reuters.com

•  GoDaddy Expansion: RBC Capital Markets analyst Mark Mahaney says the management of the world's largest domain name registrar, GoDaddy (NYSE:GDDY), sees the need to penetrate more market to expand past its current 17M customers and 465M small- to mid-sized enterprise clients outside the United States.--SeekingAlpha.com. See also MarketWatch.com Sep 6, 2017: GoDaddy (NYSE:GDDY) shares fall after 2nd share offering in 4 months.

•  .UK domains left at risk of theft in Enom blunder | theregister.co.uk: Registrar eNom finally plugs web address hijacking vulnerability.

 New gTLD .CPACongressmen concerned about misuse of .CPA top-level domain | AccountingToday.com

•  .AU backlash: Unrest at the Australian Domain Administration shows little sign of abating | afr.com: the .AU domain name regulator "faces an intense member backlash to the new vision, style and plans of newish CEO Cameron Boardman ..."

•  Why microsites aren't always ideal for SEO | SearchEngineLand.com: "... reasons you may want to reconsider splitting your website into multiple microsites. Following are some potential SEO issues that can result from implementing microsites ..." See also Google says we don't need no stinking location modifiers... or do we? | SearchEngineLand.com.

4) ICYMI Internet Domain News 

5) Most read posts (# of pageviews Sun-Sat) this past week on DomainMondo.com: 
1. News Review | New gTLDs Hucksters Lose Again: ICANN Says No $$$
2. 2017 Hurricane Season, Satellite Views, Weather App MyRadar, LIVE Feeds
3. News Review | Report: ICANN's New gTLDs As Global DNS Malware
4. Making Chatbots More Human, New York Startup Init.ai (video)
5. Visualizing the Massive $15.7 Trillion Impact of Artificial Intelligence (AI) 

-- John Poole, Editor, Domain Mondo 

feedback & comments via twitter @DomainMondo


DISCLAIMER

2016-01-27

ICANN New gTLD Program Review: Domain Name System, DNS Abuse

Or which of ICANN's new gTLDs are the "shadiest" in the global DNS?


Above: ICANN 2015 Presentation on "DNS Abuse Handling"

From the ICANN Announcement--
ICANN is currently engaged in data collection on DNS (Domain Name System) abuse and mitigation efforts implemented as part of the New gTLD Program. Members of the community and general public are invited to join ICANN on 28 January 2016 in an open discussion on the topic. This work will help inform the efforts of the review team examining the effects of the Program on Competition, Consumer Choice, and Consumer Trust, which will assess the safeguards in the Program as part of its work.

Discussion Details & How to Attend--

ICANN will hold two discussions to enable participation in all regions:
Discussion 1Jan 28, 2016 at 02:00-03:30 UTC time converter (9-10:30pm EST Jan 27)
Discussion 2: Jan 28, 2016 at 16:00--17:30 UTC time converter (11am-12:30pm EST Jan 28)
Discussions will be conducted in English. Recordings will be posted at: https://newgtlds.icann.org/en/reviews/dns-abuse.

Register to attend the discussion and ICANN will send you an email with participation information OR unable to attend, but want to contribute? Give ICANN the OK to send you a questionnaire so you can tell ICANN about your experiences. Visit: http://survey.clicktools.com/app/survey/go.jsp?iv=25apb9wqx72s8

The goals of the discussion are to help formulate a definition of DNS abuse, brainstorm methods for measuring abuse, and gather qualitative, experiential input on whether safeguards to mitigate DNS abuse in new gTLDs have been effective. The discussion will be structured around 4 central topics, which participants are encouraged to consider prior to joining:

Topic 1: Which activities do you consider to be DNS abuse? If you could put forth a globally accepted definition of DNS abuse, what would it be? This definition should be broad enough to cover various malicious uses of the DNS.

Topic 2: What are the most effective methods to measure the prevalence of abusive activities in the DNS?

Topic 3: As part of the New gTLD Program, ICANN introduced safeguards [PDF, 128 KB] to mitigate potential DNS abuse in new gTLDs (listed below). How can we measure the effectiveness of these safeguards?
  • Vetting registry operators
  • Requirement for DNSSEC deployment
  • Requirement for Thick WHOIS records
  • Prohibition of "wild carding"
  • Removal of orphan glue records
  • Centralization of Zone file access
  • Abuse contact and documented anti-abuse policy requirements for registries and registrars
  • Availability of expedited registry security request process
  • High-security zone verification
Topic 4: What has been your experience, personally or on behalf of an organization, with these safeguards? Please tell us: Which were and/or were not effective? How so and why do you believe they were or were not effective? Are there safeguards that should have been included but were not? Any remaining time will be open for questions and related discussion.

Further Information: DNS Abuse Review | ICANN New gTLDs

ICANN's New gTLD Program has enabled hundreds of new top-level domains to enter into the Internet's root zone since the first delegation occurred in October 2013. Comprehensive reviews of the program have begun and will cover a variety of topics including competition, consumer trust and choice (CCT), security and stability, rights protection and other areas. Along with commissioning third-party analyses,ICANN is capturing stakeholder experiences regarding operation of the New gTLD Program and its effects on the domain name industry. Lessons learned as a result of these efforts will help shape future rounds of the program.

ICANN's Suggested Reading:
Source: ICANN Discussion: Reviewing New gTLD Program Safeguards Against DNS Abuse

See also on Domain Mondo:
See also:
DNS Abuse Handling (pdf)
Lost in .Space (Shady TLD Research, part 14) | Blue Coat
.ZIP URLs (or, Why You Should Block Domains on a TLD That Doesn't Have Any) | Blue Coat
Real World DNS Abuse: Finding Common Ground (Cisco)
"DNS Abuse" (Google SERP)
DNS is ubiquitous and it's easily abused to halt service or steal data | Network World
Finding and Fixing Open DNS Resolvers - Infoblox Experts Community
IID | IID Predicts Massive Botnet Takeover of IoT Devices by 2017 - Cybersecurity firm also anticipates a spate of domain failures, leading to demise of websites relying on them- IID




DISCLAIMER

Domain Mondo archive