Dynadot — .com Transfer

security GoDaddy accounts vulnerable to social engineering and Photoshop

SpaceshipSpaceship
Watch

TheWatcher

Founder, RETUNE.comTop Member
Impact
995
3
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
AfternicAfternic
it was lengthy post but still interesting to read..

we have godaddy staff here @ NP. let we wait for his reply...
 
0
•••
just curious two step verification is not available in india ...why ?
 
0
•••
This was a very interesting read. Well worth it. The OP suggested that Network Solutions might have been better because you have to fax your id's into them. This is a fallacy. If you try to fax your details to NS, all you get a ringing tone. It never picks up the phone. I tried for 5 days. In the end, I had to contact support, and tell them their fax wasn't working, at all. They gave me an email address to send the documents to. So any perceived benefit from using the fax, went straight out the window.

I would have commented this on the article, but didn't find any way to post comments.
 
1
•••
just curious two step verification is not available in india ...why ?
Probably because Go Daddy is trying to find a provider in India with acceptable mobile roaming fees between countries.
 
0
•••
Probably because Go Daddy is trying to find a provider in India with acceptable mobile roaming fees between countries.
yes but they can provide two step email verification
 
0
•••
It's sad, but it's nothing new at all. Remember how sex.com was stolen back in 1994 ?
Social engineering is also the modus operandi of scripts kiddies like Syrian electronic Army.

It works...
 
2
•••
There is a way they could eliminate 100% of these type of domain thefts.... Offer account holders the option of turning off email and phone password resets and instead send out a snail mail letter that must be signed for. There would be an extra fee for this type of reset of course.
 
0
•••
0
•••
Now they have 2 factor authentication with SMS text code. It would be nice if they implement Google authenticator.
 
0
•••
Adding a big "Transfered, Deleted, and Not Renewed Domains" history button in one's Godaddy account would help account holders know if someone has stolen domains from them.
 
0
•••
Actually that's a good idea.
 
0
•••
Appraise.net

We're social

Escrow.com
Spaceship
Rexus Domain
CryptoExchange.com
Domain Recover
CatchDoms
DomainEasy — Live Options
DomDB
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back