IT.COM

alert .FO registry hacked

NameSilo
Watch

HotKey

Made in CanadaTop Member
Impact
12,127
If you are holding domains directly with the .fo registry, then surely you've received their email, otherwise the notice also appears on the site upon visit. Closed until October 1st, and accounts cannot be accessed.

The hack was interrupted, but the hackers managed to gain access to email addresses and passwords off all users at nic.fo.

Information regarding payments etc. were not compromised.

Yikes! "all users". We should all know by now, never use same security credentials to access accounts, because of stuff like this.
 
13
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
That sounds so bad. You would think they should be able to know better, being in such a highly technological niche. Sorry for those who have accounts with them. Hopefully no bad consequences suffered by fellow-NP-peops.
 
0
•••
Are they saying they were storing passwords in plain text rather than in hashed form ? In 2018 ?
 
0
•••
Last edited:
3
•••
0
•••
Are they saying they were storing passwords in plain text rather than in hashed form ? In 2018 ?
I don't know how much more details will be shared as per the hack, this registry keeps to itself and is relatively unknown in the domainosphere. Storing in plain text still occurs, amazingly. Didn't this happen with Twitter a short time ago?

Sorry for those who have accounts with them. Hopefully no bad consequences suffered by fellow-NP-peops.
So far no indication domains have been lost, I know all of mine are intact anyways. It looks like the operator locked down the site immediately after the breach.
 
0
•••
Rough..still not up. Posting has changed from "up and running Oct 1st", to
as soon as possible

Better take the time, fix it properly to ensure the breach doesn't occur again, rather than rushing to keep a deadline and fixing bugs on the fly. Could be the investigation holding it back too.
 
0
•••
OMG! a registry hacked :wideyed: terrible news
 
0
•••
It's not the first time a NIC is hacked.
 
0
•••
It's not the first time a NIC is hacked.
wish to know if the hacker is a white or black hacker. I mean if the hack was reported directly to the registar by the hacker or if the hacker stole the data from the nic without saying nothing to .FO Registry.
 
0
•••
Whoever did this is a blackhat hacker obviously. A white hat would report the vuln privately, and possibly follow up with responsible disclosure after the vuln is remediated.
 
1
•••
Whoever did this is a blackhat hacker obviously. A white hat would report the vuln privately, and possibly follow up with responsible disclosure after the vuln is remediated.
Hello Kate! That's why a unique password for each login should be used. A password shared between more than one login is not good.
 
0
•••
The registry should reopen later today. 2 weeks+ downtime! Crazy.

They are not divulging any more additional info other than confirming they are 100% certain no payment info was stolen.
 
0
•••
The registry should reopen later today. 2 weeks+ downtime! Crazy.

They are not divulging any more additional info other than confirming they are 100% certain no payment info was stolen.
2 weeks of downtime :wideyed: I can't believe it too
 
0
•••
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back