NameSilo

alert Epik Had A Major Breach

SpaceshipSpaceship
Watch

DaveX

@GoDaveXTop Member
Impact
52,011
Last edited:
36
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
AfternicAfternic
1
•••
Last edited:
4
•••
So if we can't get news from CNN or from Rob Monster. Where can we get the latest on the Epik hack fallout? NP seems like a pretty good source.

Well, Twitter has always been the main source where things around the Epik data breach get published, announced, and analyzed, but it is spread over many accounts. It is not immediately easy for the layman to estimate which sources are reliable. Some new Twitter accounts that publish about the data breach are just one month old and have valuable information. On the darkweb, Epik is discussed as well.

The established leaders (influencers) in the infosec community with a large reach, are also starting to delve into this, mainly because this case is fairly unique and high-profile, with cybersec, APT and politics involved. They have previously been analyzing C2 infrastructures and now see puzzle pieces coming together. Epik seems to play a central role in this ecosystem. Data from the Epik leaks is combined with other investigative sources like data from ICIJ, in order to map the relations (including financial) between Epik and other domestic and foreign parties.

On this forum, we just see more structure and additional insights that may help Epik customers and other stakeholders to further understand what seems to be going on at the company, and how they can protect themselves now they are vulnerable.

Some people in this thread have already mentioned that they are in contact with CNN. It looks like CNN Cyber Security Reporter Sean Lyngaas (snlyngaas) is now delving into this. Other journalists, from left to right, have also published about the data breach, but the enormous amount of data has to be interpreted carefully before final conclusions can be drawn.
 
Last edited:
4
•••
It is not immediately easy for the layman to estimate which sources are reliable.

On this forum, we just see more structure and additional insights that may help Epik customers and other stakeholders to further understand what seems to be going on at the company, and how they can protect themselves now they are vulnerable.

Some people in this thread have already mentioned that they are in contact with CNN. It looks like CNN Cyber Security Reporter Sean Lyngaas (snlyngaas) is now delving into this.

It is certainly beneficial for the layman customer to have people like yourself, @Molly White, @Kirtaner, @bmugford, @johnjhacking, and others who are following the news and have reporting skills and other insights post their findings here. NP is like an aggregate of the news on this topic. Hopefully we can keep going until it is resolved.
 
6
•••
It is certainly beneficial for the layman customer to have people like yourself, @Molly White, @Kirtaner, @bmugford, @johnjhacking, and others who are following the news and have reporting skills and other insights post their findings here. NP is like an aggregate of the news on this topic. Hopefully we can keep going until it is resolved.

Thank you. I agree that people from a lot of different disciplines are now present in this thread, and that's truly rather unique, and very useful.
 
Last edited:
4
•••
4
•••

That is a hyperbolical statement that emphasizes the issue. Even if the software wasn't made, if said software hasn't been updated for over 10 years, it basically needs a rewrite to make it secure. You have to implement all the latest server and source code processing updates as they are released. Those are only the basic steps. The least you should do.
 
Last edited:
4
•••
You couldn't make this stuff up. It's almost the making of a film. Ah someone already did it, called it Swiss Miss...



https://www.imdb.com/title/tt0030824/

Or a soap opera. Did anyone notice that epik.tv sold in May this year for $360?

And on the latest DNJ: DaaZ.com sold epik.in ($2,250) https://www.dnjournal.com/domainsales.htm
Nice for hacks like epik.in/trouble or epik.in/politics.

Earlier epik domain sales:

epik.org 9,644 USD 2014-03-31 Sedo

epik.com 6,944 USD 2007-06-05 Private

https://namebio.com/?s==cDM3YTN2QzM

What value would you give to epik.com now?


Epik.shop is a premium, but in many extensions epik is free and cheap to register, such as .me and .io
 
Last edited:
1
•••
Epikfail.com is going for 2500
 
1
•••
Epikfail.com is going for 2500

Although I have to admit that the information provided by Epik is lacking, these kinds of domain names seem to me to have little value. The following domain has a Creation Date of 2021-09-14T17:44:19Z.

upload_2021-10-29_17-26-14.png
 
0
•••
The intrinsic value of it to post the scope of the data leak with flowcharts and spreadsheets without compromising PII
 
0
•••
I was going to buy epikfaildump, but some vulture beat me too itโ€ฆ
 
0
•••
Thefartking.com is available though
 
0
•••
0
•••
It is certainly beneficial for the layman customer to have people like yourself, @Molly White, @Kirtaner, @bmugford, @johnjhacking, and others who are following the news and have reporting skills and other insights post their findings here. NP is like an aggregate of the news on this topic. Hopefully we can keep going until it is resolved.
Don't necessarily know if I can keep up, but if I notice anything prolific i'll let y'all know.
 
5
•••
Although I have to admit that the information provided by Epik is lacking, these kinds of domain names seem to me to have little value. The following domain has a Creation Date of 2021-09-14T17:44:19Z.

Show attachment 202997

Create affiliate links to other registrars, spam the domain on twitter,FB and linkedin = profit!
 
0
•••
Create affiliate links to other registrars, spam the domain on twitter,FB and linkedin = profit!

Not sure if that is a sustainable business model, Dirk :xf.wink:

(I know you didn't suggest it as a serious option)
 
2
•••
OVEROPTIC SYSTEMS LTD was incorporated on 14 March 2013 in the U.K. and the the only public information available is the name of one appointed director, his address and nationality. He's a ukrainian citizen from Crimea.

Thank you @FernandoBMS

Are you able to present a short overview of the most prominent countries involved in the complete Epik ecosystem, maybe with a short description?
 
Last edited:
0
•••
Don't necessarily know if I can keep up, but if I notice anything prolific i'll let y'all know.

For this domain name forum, where the major registrars and registries are present, it would be very helpful if you can think along how to make Epik more secure, and also how other domain registrars, registries and domain aftermarkets can learn from this incident. This thread clearly shows the current risks and the rapidly evolving cyber threat landscape, which is useful for the domain industry. An industry that is at the core of doing business on the Internet. Technically, we can secure DNS against kaminsky attacks, we can do DNS qname minimization, we can do a lot. But we should think more about other attack vectors, like APIs, or registrars sending CSV's with EPP transfer codes using third party mail solutions instead of offering a secure download from their website. Just some examples, you get the idea.
 
Last edited:
3
•••
The intrinsic value of it to post the scope of the data leak with flowcharts and spreadsheets without compromising PII

The scope and impact of the Epik data leak (several leaks) can best be described by creating actual stories based on different customer profiles and profiles of other stakeholders participating/following this thread. Readers will gain a better understanding for their specific use case. There's indeed no need to disclose any PII data on this forum.
 
Last edited:
2
•••
Appraise.net
Spaceship
Domain Recover
CatchDoms
DomainEasy โ€” Payment Flexibility
  • The sidebar remains visible by scrolling at a speed relative to the pageโ€™s height.
Back