Settings

Theme

Fraud Friday: Investigation into a ring of fake Universities

guardyourdomain.com

5 points by cloudyporpoise 3 years ago · 3 comments

Reader

LinuxBender 3 years ago

The immediate red flag to me is all the domains listed do not end in .edu which is easy to register if one has a real accredited school.

  • cloudyporpoiseOP 3 years ago

    We drill into this in the article and unfortunately many cyber-security tools categorize the education related gTLDs in the same bucket as the verification requiring .edu

    • LinuxBender 3 years ago

      I suppose that should there be enough fraud on the gTLD's that mimic .edu[cation] we could push for legislation to have ICANN [1] drop those TLD's given that scammers will do what scammers can do. Or alternately add the same requirements as .edu to those gTLD's. In the mean time perhaps all the firewall and DNS providers that block malicious sites should just globally block those TLD's. e.g. OpenDNS, Fortinet, Palo Alto Networks, maybe even Google DNS and Cloudflare DNS, all the blocklists on Github [2], etc...

      [1] - https://www.icann.org/resources/pages/report-security-issues...

      [2] - https://github.com/badmojr/1Hosts

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection