Dynadot โ€” .com Transfer

alert Epik Had A Major Breach

SpaceshipSpaceship
Watch

DaveX

@GoDaveXTop Member
Impact
52,011
Last edited:
36
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
Unstoppable Domains โ€” AI StorefrontUnstoppable Domains โ€” AI Storefront
To be clear, NamePros had no role in the decision of when this poll would run, and we didn't know about the poll until it was posted: Read more.

The poll's creator confirmed:


@Rob Monster, your misinforming and misleading words are not appreciated.

Please try not to assume the worst about others.

Truly, the pettiness of the man is unbelievable. Instead of posting updates of the response to the hack, he concerns himself with this?! By writing a long post about a random forum poll he is not in the lead in?! In which post he writes conspiracy theories?! This is what his mind is on. It's all about him. Not about his customers.

IMO, he acquired that other forum to attack NP, receive adulation from his fanatics, and promote his narrative. That's what it looks like. Because he is clearly displaying narcissistic behavior.
 
Last edited:
4
•••
Also, it is very interesting how he phrased it:

Surprise, surprise. NamePros decided to run the "Registrar of the Year" poll right on the heels of the very high profile NP Epik hack thread that I am referring to as a "struggle session". - RM on the other forum

He didn't write, a high profile hack. He wrote "the very high profile NP Epik hack thread". Does that sound to anyone else like he is enjoying all of this attention?
 
2
•••
With 'struggle' he means that their customers and all other affected stakeholders have to find out on Twitter and in the press wth is going on there.
 
1
•••
Last edited:
8
•••
upload_2021-10-26_14-8-11.png
 
1
•••
The lack of explanation and meaningful guidance has gone on for a long time now. For concerned Epik customers who want to better educate themselves about, and arm themselves against, potential attack vectors, I've been sorting out a few resources over the past few days. You can find them in the Technology section of NamePros.

https://www.namepros.com/forums/technology.249/
 
13
•••
The lack of explanation and meaningful guidance has gone on for a long time now. For concerned Epik customers who want to better educate themselves about, and arm themselves against, potential attack vectors, I've been sorting out a few resources over the past few days. You can find them in the Technology section of NamePros.

https://www.namepros.com/forums/technology.249/

Very impressive. Lots of research. Great job.
 
8
•••
CNN just reached out to me regarding an in-depth investigation into Rob Monster.

It's nowhere near over yet.
 
10
•••
CNN just reached out to me regarding an in-depth investigation into Rob Monster.

It's nowhere near over yet.

Keep us posted so we can tune in.
 
3
•••
CNN just reached out to me regarding an in-depth investigation into Rob Monster.

It's nowhere near over yet.

You may want to contact @Derek Peterson

He is also currently in contact with CNN, he said earlier in this thread.
 
Last edited:
3
•••
Wow CNN is reading our forum.

3148.jpg
 
Last edited:
2
•••
More mentions of OverOptic Systems in this article last month:

https://bylinetimes.com/2021/09/08/texa-anti-abortion-bounty-hunting-website-now-hosted-in-the-uk/

Website registration records indicate the IP now associated with the URL Prolifewhistleblower.com is associated with UK-based Overoptic Systems LTD, which also does business by the name HQHost. Overoptic Systems only has one listed corporate director and their address is in Crimea. At the time of publication, Overoptic Systems had not returned a request for comment.

Records also indicate these IP addresses are linked to a New Jersey-based company called NatCoWeb Corp. They also show that NatCoWeb hosts extremist content, including a forum for the 3 Percenter right-wing extremist group and two websites for the Alliance Defending Freedom, a Christian nonprofit labelled by the Southern Poverty Law Center as a hate group. Little can be found about NatCoWeb Corp online. It doesnโ€™t list corporate officers and doesnโ€™t appear in New Jersey state corporate registration lookups. At the time of publication, NatCoWeb had not returned a request for comment.

Whois records of the IP address associated with Prolifewhistleblower.com also show Anonymize Inc. as the privacy administrator. NatCoWeb Corp and Anonymize Inc. appear to have a number of links. The bulk of the IPs on the NatCoWep Corp server list Anonymize Inc as their privacy administrator. Anonymize is a wholly-owned subsidiary of Epik.
 
3
•••
Records also indicate these IP addresses are linked to a New Jersey-based company called NatCoWeb Corp. They also show that NatCoWeb hosts extremist content, including a forum for the 3 Percenter right-wing extremist group and two websites for the Alliance Defending Freedom, a Christian nonprofit labelled by the Southern Poverty Law Center as a hate group. Little can be found about NatCoWeb Corp online. It doesnโ€™t list corporate officers and doesnโ€™t appear in New Jersey state corporate registration lookups. At the time of publication, NatCoWeb had not returned a request for comment.

Whois records of the IP address associated with Prolifewhistleblower.com also show Anonymize Inc. as the privacy administrator. NatCoWeb Corp and Anonymize Inc. appear to have a number of links. The bulk of the IPs on the NatCoWep Corp server list Anonymize Inc as their privacy administrator. Anonymize is a wholly-owned subsidiary of Epik.

A certified network engineer who analyzed these web records for the Byline Times believes that, despite the seeming switch in IP records, Epik could still be providing IP hosting in some regard.
 
2
•••
Steven Monacelli pressed Monster on it during the Q&A, but Monster dodged:

Monacelli, YT0:53:44: I asked you for clarification. If you can provide me with the exact understanding of why all of these things are pointing to Overoptic systems, NatCoWeb Corp, and Tinhat, I donโ€™t understand these connections and thatโ€™s why I called you. But since you were unwilling to provide me any clarity regarding those connections, I reported on what is publicly available information.

Monster, YT0:54:08: Yeah, I mean the problem is that so much of the content that is out there, like Huffington Post and like, a whole list. Like you go look to the Wikipedia pageโ€ฆ I mean, do you guys get how subverted Wikipedia is? You realize how much of a globalist tool that thing has become? You get that? Is that, like, lost on people?

Monacelli, YT0:54:28: So Iโ€™m not talking about Wikipedia. Iโ€™m talking about the web domain registration that I was able to link, and I explained to you over the phoneโ€ฆ

Monster: Steve. Steve. Iโ€™m gonna get that page taken down, alright? Alright?
 
Last edited:
11
•••
OVEROPTIC SYSTEMS LTD was incorporated on 14 March 2013 in the U.K. and the the only public information available is the name of one appointed director, his address and nationality. He's a ukrainian citizen from Crimea.
 
3
•••
OVEROPTIC SYSTEMS LTD was incorporated on 14 March 2013 in the U.K. and the the only public information available is the name of one appointed director, his address and nationality. He's a ukrainian citizen from Crimea.

Sometimes it is hard to tell the difference between nefarious and a useful idiot.

You can see how many shady connections have already been made. This tangled web will continue to be unraveled.

Brad
 
5
•••
By the way.
0 domains were lost, but Im sure they could have stolen some, if they wanted to.

For example, all credentials were obtained.
Some use the same password everywhere.
Had hackers wanted, they would have searched using automated tools, stolen emails, then all domains linked to those emails.
Silently, before leaking the data.
They simply didnt choose to.

Even without credentials, Im sure they could have done much more damage, had they intended to.

Either they didnt want to hurt us / didnt want to touch people's property and have FBI to go after them in a meaner way, or they didnt want to appear as bad guys.

Either way we're lucky (I guess).
 
1
•••
1
•••
1
•••
0
•••
Dynadot โ€” .com TransferDynadot โ€” .com Transfer
Spaceship
Domain Recover
CatchDoms
DomainEasy โ€” Payment Flexibility
  • The sidebar remains visible by scrolling at a speed relative to the pageโ€™s height.
Back