HNHacker News
TopNewBestAskShowJobs

925dk

325 karma · joined July 30, 2012

submissionscomments
925dk··on Hijack of Amazon’s domain service used to reroute web traffic for two hours
Traffic to Route 53 was rerouted to an alternative DNS server. But that has nothing to do with my question re. AWS calling out Google in particular in their status update.
925dk··on Hijack of Amazon’s domain service used to reroute web traffic for two hours
Why do AWS http://status.aws.amazon.com say that only Google resolvers were affected?

Between 4:05 AM PDT and 5:56 AM PDT, some customers may have experienced elevated errors resolving DNS records hosted on Route 53 using DNS resolvers 8.8.8.8 / 8.8.4.4. This issue was caused by a problem with a third-party Internet provider. The issue has been resolved and the service is operating normally.

925dk··on HipChat security notice
By whom?
925dk··on HipChat security notice
By the way, HipChat still has no two-factor authentication.
925dk··on HipChat security notice
It's sitting right next to the emoji team.
925dk··on HipChat security notice
"This weekend our Security Intelligence Team detected" ...

"Security Intelligence Team" ... yeah, because that team actually exists.

925dk··on HipChat security notice
Why are they force resetting everyone's password if they are bcrypt'ed?
925dk··on Atlassian HipChat hacked
They now confirm https://blog.hipchat.com/2017/04/24/hipchat-security-notice/
925dk··on Facebook blocked (links to) entire AWS Frankfurt region
Seems fixed now.
925dk··on Hetzner Servers Compromised
This was dedicated servers (root servers they call them) - and I'm from Europe.
925dk··on Hetzner Servers Compromised
Yes seriously, here is what they asked me on first order with them:

"Since you're a new customer with Hetzner, we ask you for a scan of your passport or ID card (authenticity check). It's only necessary for your first order with us.

Please send the scan by fax or as an email attachment."

When they say they delete it after 21 days, as they did in the mail I've just received, I trust them. I find their communication on this matter, as well as previous matters, open and serious.

925dk··on Hetzner Servers Compromised
Here is the (english) mail they sent to customers back in October 2011 on the previous intrusion:

http://pastebin.com/uJhG5aLS

925dk··on Hetzner Servers Compromised
As part of the registration process with hetzner.de, you have to send them scans of personal documents (such as passport, drivers license or similar).

I asked them just now if these systems were compromised and they promptly replied:

"The system that stores scans of ids, credit cards and so on was not compromised. In addition to that, we delete that information after 21 days."

925dk··on Danish police/government system hacked
Million of Danish Personal Identification numbers and driver license data was downloaded. 10.000 police email accounts "hacked" - as well as access to SIS data (Schengen registers).