Why in the world wouldn't they just put it on their own domain?
Why in the world wouldn't they just put it on their own domain?
You're right of course, but I'm betting that was the motivation.
Something like https://breach.equifax.com
Agreeing with everyone though, it's a wrong reason, but I can fathom why someone would do it.
Basically, the request signals all the little fiefdoms that it's their chance to weigh in.
<tangent>
A few days ago, got a mail from PayPal about "changes in account". Go to my account was linked to https://www.secureserverpaypal.ssvahan.com/home. I've forwarded the mail to PayPal spoofing address, they replied it's legit. Why would a legit PayPal activity be linked to an arbitrary domain - I don't get it. It makes zero sense.
>Hi there. Thanks for the quick response. I do have a question. Why would PayPal refer me to a form not hosted under PayPal domain? How can I tell it's a legit PayPal communication?
Expectedly, never got a response.
I would be confident to say that it was actively killed. Neat. Which is either a clear indication that PayPal finally did internally report the domain, or that some other source of noise got it shut down.
- Has "security" in its name
- Has the current year
I can't explain exactly why I think those factors make it suspicious, however.I think I have an idea of why, though I haven't been able to articulate it properly yet.
I've been thinking about it a lot recently because I co-work with a bunch of digital marketers, and some of them have affiliate marketing sites with domains that follow the pattern http://yourexactsearchterm.com.
The best I can come up with is the Uncanny Valley of SEO, where it feels like a website was made and over-optimized specifically for people making my exact search query. Maybe this is unfair or confirmation bias, but I feel like those websites are the most likely to be low quality content farms (e.g. paying content writers pennies to regurgitate content they have no experience with and/or don't understand). Either that, or they are outright scams.
Do any digital marketers here have opinions about this?
It's not just domain names, but the paths in URLs too --- an entry with your-exact-search-term.html almost subconsciously gets skipped over when scanning search results, unless the search term is extremely specific and somewhat obscure or I'm specifically looking for a file/path (e.g. spc4r37.pdf)
Even worse would have been if they had used dashes equifax-security-2017.com.
(plausible for those without the experience of "suspicious impression", of course)