Unstoppable Domains โ€” AI Assistant

alert Epik Had A Major Breach

SpaceshipSpaceship
Watch

DaveX

@GoDaveXTop Member
Impact
52,011
Last edited:
36
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
Unstoppable Domains โ€” AI StorefrontUnstoppable Domains โ€” AI Storefront
psviPg2.png

internal documents also revealed the keyboard used by some top skilled engineers.

c1krptL.png


it doesn't matter what the code is doing, just upgrade it to the latest version. youll be fine.
 
3
•••
1
•••
So is this user Molly actually saying that Epik/Monster didn't have access to their own code for the last 10 years, since acquisition? So it was some kind of a lease (white label)?
The screenshotted text in my tweet is from the transcript of Rob's Q&A session. The transcript is timestamped if you want to hear it from the horse's mouth. He came back to the topic a few times throughout the Q&A so I'll try to summarize: when Epik acquired the Colorado Springs-based IntrustDomains in 2011, "it came with a Russian development team". "At the time they were based in the Ukraine, or in the Crimea region. Then there were wars and then they moved to Krasnodar, and theyโ€™re based there." "The code base that the Russians were totally safeguarding, they wouldnโ€™t give our new engineers access to the git, now we know why: the code sucked."

Epik engineers outside of that group only gained access to this 10-year-old git repository following the hack: "our top engineers mostly hadnโ€™t seen that code because it was kind of blackboxed, behind a firewall, separate git repository, and not part of the Epik git. And that might sound surprisingโ€ฆ considering that weโ€™re like a registrar, but thatโ€™s basically because of the history of how that company became part of Epik. It was an acquisition, it is a captive dev team, and Iโ€™ve operated with that group to a large extent on the basis of trust. Theyโ€™re good people, theyโ€™re honorable people, ethical, responsible people, but their coding methods and frameworks are not up to standard, and theyโ€™ve pretty much handed over all the keys to two top guys, Justin Tabb, David Roman."

It didn't sound to me like white labelingโ€”Rob said they acquired the registrar code and engineering team from Intrust. But for some reason, it seems they allowed the engineering team to retain total ownership of the code, totally siloed from the rest of Epik's team.
 
Last edited:
11
•••
So is this user Molly actually saying that Epik/Monster didn't have access to their own code for the last 10 years, since acquisition? So it was some kind of a lease (white label)?

"This user Molly" is participating in this thread, you can ask her directly. But it's Rob himself who said things in the video meeting. As we don't know the exact contractual details re Intrust and other Epik ventures that have been acquired, we can only guess atm.
 
Last edited:
7
•••
"This user Molly" is participating in this thread, you can ask her directly. But it's Rob himself who said things in the video meeting. As we don't know exact contract details re Intrust and other Epik ventures that have been acquired, we can only guess atm.

It is interesting because it would be another example of Rob basically white labeling/leasing products from others and claiming ownership.
 
3
•••
The screenshotted text in my tweet is from the transcript of Rob's Q&A session. The transcript is timestamped if you want to hear it from the horse's mouth. He came back to the topic a few times throughout the Q&A so i'll try to summarize: when Epik acquired the Colorado Springs-based IntrustDomains in 2011, "it came with a Russian development team". "At the time they were based in the Ukraine, or in the Crimea region. Then there were wars and then they moved to Krasnodar, and theyโ€™re based there." "The code base that the Russians were totally safeguarding, they wouldnโ€™t give our new engineers access to the git, now we know why: the code sucked."

Epik engineers outside of that group only gained access to this 10-year-old git repository following the hack: "our top engineers mostly hadnโ€™t seen that code because it was kind of blackboxed, behind a firewall, separate git repository, and not part of the Epik git. And that might sound surprisingโ€ฆ considering that weโ€™re like a registrar, but thatโ€™s basically because of the history of how that company became part of Epik. It was an acquisition, it is a captive dev team, and Iโ€™ve operated with that group to a large extent on the basis of trust. Theyโ€™re good people, theyโ€™re honorable people, ethical, responsible people, but their coding methods and frameworks are not up to standard, and theyโ€™ve pretty much handed over all the keys to two top guys, Justin Tabb, David Roman."

Thank you very much for that and WOW but not surprising. Most of his products were (haven't looked for over a year) white labels which he claimed to have built and have 100% control of.
 
2
•••
4
•••
1
•••
4
•••
Hackers expose Texas GOP's 'sensitive documents' and 'dark memes' in wake of abortion law: report

https://www.rawstory.com/texas-gop-epik-hack/

https://www.dailydot.com/debug/anonymous-texas-gop-epik/


I wonder what else was breached. I still have questions about ID documents which have not been addressed by Epik. I also have questions about potential integrated accounts like Sedo, Afternic, Escrow.com, etc.

Also what about hosted data and login/passwords, among other things.

The exact depth of this hack is still unknown. Epik is providing no clarity.

Brad
 
Last edited:
7
•••
5
•••
2
•••
Epik engineers outside of that group only gained access to this 10-year-old git repository following the hack: "our top engineers mostly hadnโ€™t seen that code because it was kind of blackboxed, behind a firewall, separate git repository, and not part of the Epik git. And that might sound surprisingโ€ฆ considering that weโ€™re like a registrar, but thatโ€™s basically because of the history of how that company became part of Epik. It was an acquisition, it is a captive dev team, and Iโ€™ve operated with that group to a large extent on the basis of trust. Theyโ€™re good people, theyโ€™re honorable people, ethical, responsible people, but their coding methods and frameworks are not up to standard, and theyโ€™ve pretty much handed over all the keys to two top guys, Justin Tabb, David Roman."

It didn't sound to me like white labelingโ€”Rob said they acquired the registrar code and engineering team from Intrust. But for some reason, it seems they allowed the engineering team to retain total ownership of the code, totally siloed from the rest of Epik's team.

All of this is just so convoluted, it boggles the mind. They are "good people", "honorable", "ethical", "responsible". But their code sucked and they wouldn't give access. But we still used it to make money for as long as we could. What?! Who runs a company this way?
 
9
•••
Hate speech is not free speech. More importantly, [CITATION NEEDED], because I'm positive that exactly zero people in Canada have been arrested for saying that, despite the fact that it is a vile and reprehensible statement that has no place in polite society.

Hate speech is free speech. Speech you or the majority doesn't agree with is why free speech is important and the #1A of the USA Constitution.
 
2
•••
Investigative journalists from twitter are once again trying to connect the dots (Epik and the datacenter):
traco.jpg


Fascinating. Yeah, it may not be easy for the journalists to understand how internet works in aspects of datacenters, RIRs (regional Internet registries), and IP addresses distribution. So - as easy and simplified as possible: Does Rob Monster have all servers in his basement or bedroom? Probably, no. Epik, Godaddy, Network Solutions, etc. - they all need to use datacenters (colocation providers). This is because they need internet connectivity, ventilated racks and the like.

Epik is using Natcoweb for this purpose. End of story.

It takes ~5 minutes to find out that Natcoweb existed long before Rob/Epik acquired Intrust Domains (and started to operate in all aspects relevant to current discussion), and even before Rob joined Epik.

In particular:

Webhosting talk forum shows that the member Natcoweb joined in Apr 2009.

Webarchive shows the earliest version of hqhost website (which appears to be one of natco retail arms) dated back to ~2003.

Epik has acquired IntrustDomains in 2011.

What else? The CEO has a name of Russian origin? Sergey Brin is also Russian name, but this guy is one of Google founders.

Earlier, investigative journalists found that Epik is sitting on billions of $$$ in 4-symbol domain assets. Now, they are mixing Epik and its clients with the datacenter and their clients. What would be the next sensation? ;-()
 
Last edited:
6
•••
5
•••
Love all the twitter investigators with no-name, affiliation. Just like real journalist.
 
5
•••
I wonder how
I'm sure you know more about scripture than most but in the Bible, didn't God exterminate a bunch of people he didn't particularly like and wanted to start over with Noah and a boat? I don't think he killed them because he loved them.
And then there's the story of 'Sodom' and Gomorrah. Which entirely refutes what you said...

Not that I care. It's just some food for thought

I would explain why in detail .. but this thread isnโ€™t the placeโ€ฆ

it appears the hacking continues .. i think .. sure there are some who donโ€™t want to be exposed .. but as a majority .. I wouldnโ€™t think the people who are in the affiliations being exposed have any shame in being in their affiliation and cause โ€ฆ no more than I would think any Far Left people have any shame in their affiliation or exposure for participating in the affiliation activities or causes.
 
Last edited:
3
•••
Love all the twitter investigators with no-name, affiliation. Just like real journalist.

Yeah, well it is what it is. Rob and Epik are basically saying nothing on the subject.

Good or bad there are a lot of people analyzing the data from amateurs to top tier security experts, and everything in between.

Brad
 
Last edited:
2
•••
Love all the twitter investigators with no-name, affiliation. Just like real journalist.

itโ€™s the going thing today .. claim โ€œIndependent โ€ and you can be a Independent Investigator .. Independent?? Name your title .. we already know โ€œMediaโ€ Research .. Journalist .. video producer are all approved with certain law enforcement officials of certain states .. as we have seen
 
Last edited:
1
•••
Appraise.net
Spaceship
Domain Recover
CatchDoms
DomainEasy โ€” Live Options
  • The sidebar remains visible by scrolling at a speed relative to the pageโ€™s height.
Back