Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse

NodeBB

  1. Home
  2. uncategorized
  3. we've seen fedi instances on ip6.arpa

we've seen fedi instances on ip6.arpa

Scheduled Pinned Locked Moved uncategorized
50 Posts 23 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • dam@0.9.2.e164.arpaD dam@0.9.2.e164.arpa
    we've seen fedi instances on ip6.arpa
    we've seen them on in-addr.arpa

    how about one on the mapped phone number domain of St. Helena (+290)?
    0.9.2.e164.arpa
    yes. it's mine now.
    ? Offline
    ? Offline
    Guest
    wrote last edited by
    #13

    @dam welcome!

    1 Reply Last reply
    0
    • ? Guest

      @domi@donotsta.re @dam@0.9.2.e164.arpa realistically-speaking how far would you be able to reach with such a thing without getting in trouble lol

      domi@donotsta.reD This user is from outside of this forum
      domi@donotsta.reD This user is from outside of this forum
      domi@donotsta.re
      wrote last edited by
      #14
      @nay @dam idk, https://1.6.0.0.8.0.0.b.e.d.0.a.2.ip6.arpa has been up for almost 4 months, my ISP (xoxo bgp.wtf) knows and doesn't mind. no word from anyone higher, so either unnoticed or they don't care too
      ? ? 2 Replies Last reply
      0
      • domi@donotsta.reD domi@donotsta.re
        @nay @dam idk, https://1.6.0.0.8.0.0.b.e.d.0.a.2.ip6.arpa has been up for almost 4 months, my ISP (xoxo bgp.wtf) knows and doesn't mind. no word from anyone higher, so either unnoticed or they don't care too
        ? Offline
        ? Offline
        Guest
        wrote last edited by
        #15

        @domi@donotsta.re @dam@0.9.2.e164.arpa i mean with ip6.arpa it's not exactly unexpected; that's your own resources anyway for all what it matters. but *.e164.arpa is a country's specific resource you should not have access to 😛

        domi@donotsta.reD 1 Reply Last reply
        0
        • ? Guest

          @domi@donotsta.re @dam@0.9.2.e164.arpa i mean with ip6.arpa it's not exactly unexpected; that's your own resources anyway for all what it matters. but *.e164.arpa is a country's specific resource you should not have access to 😛

          domi@donotsta.reD This user is from outside of this forum
          domi@donotsta.reD This user is from outside of this forum
          domi@donotsta.re
          wrote last edited by
          #16
          @nay yeah no clue here 😛 i'm still wondering how @dam did it, i'd love a writeup
          ? 1 Reply Last reply
          0
          • domi@donotsta.reD domi@donotsta.re
            @nay yeah no clue here 😛 i'm still wondering how @dam did it, i'd love a writeup
            ? Offline
            ? Offline
            Guest
            wrote last edited by
            #17

            @domi@donotsta.re @dam@0.9.2.e164.arpa at my group we also have a e164.arpa subdomain. it's part of the E.164 standard. thing is, some countries have let the DNS servers' domains expire because it's not really used these days... and nothing's stopping you from snatching them and serving your own.

            ? 1 Reply Last reply
            0
            • ? Guest

              @domi@donotsta.re @dam@0.9.2.e164.arpa at my group we also have a e164.arpa subdomain. it's part of the E.164 standard. thing is, some countries have let the DNS servers' domains expire because it's not really used these days... and nothing's stopping you from snatching them and serving your own.

              ? Offline
              ? Offline
              Guest
              wrote last edited by
              #18

              @domi@donotsta.re @dam@0.9.2.e164.arpa in the case of 0.9.2.e164.arpa it's pointing at ns.enum.org.uk and ns6.icb.co.uk... enum.org.uk was expired and @dam@0.9.2.e164.arpa snatched it. ns6.icb.co.uk doesn't resolve at all. you can guess what happened next.

              (actually we had that domain too, i guess we let it expire accidentally, oops)

              domi@donotsta.reD maia@haj.magmaus3.eu.orgM 2 Replies Last reply
              0
              • ? Guest

                @domi@donotsta.re @dam@0.9.2.e164.arpa in the case of 0.9.2.e164.arpa it's pointing at ns.enum.org.uk and ns6.icb.co.uk... enum.org.uk was expired and @dam@0.9.2.e164.arpa snatched it. ns6.icb.co.uk doesn't resolve at all. you can guess what happened next.

                (actually we had that domain too, i guess we let it expire accidentally, oops)

                domi@donotsta.reD This user is from outside of this forum
                domi@donotsta.reD This user is from outside of this forum
                domi@donotsta.re
                wrote last edited by
                #19
                @nay @dam oh my gosh. this hack is GREAT
                ? dam@0.9.2.e164.arpaD 2 Replies Last reply
                0
                • dam@0.9.2.e164.arpaD dam@0.9.2.e164.arpa
                  we've seen fedi instances on ip6.arpa
                  we've seen them on in-addr.arpa

                  how about one on the mapped phone number domain of St. Helena (+290)?
                  0.9.2.e164.arpa
                  yes. it's mine now.
                  ? Offline
                  ? Offline
                  Guest
                  wrote last edited by
                  #20

                  @dam what kind of witchcraft is this

                  1 Reply Last reply
                  0
                  • ? Guest

                    @domi@donotsta.re @dam@0.9.2.e164.arpa in the case of 0.9.2.e164.arpa it's pointing at ns.enum.org.uk and ns6.icb.co.uk... enum.org.uk was expired and @dam@0.9.2.e164.arpa snatched it. ns6.icb.co.uk doesn't resolve at all. you can guess what happened next.

                    (actually we had that domain too, i guess we let it expire accidentally, oops)

                    maia@haj.magmaus3.eu.orgM This user is from outside of this forum
                    maia@haj.magmaus3.eu.orgM This user is from outside of this forum
                    maia@haj.magmaus3.eu.org
                    wrote last edited by
                    #21

                    @nay@mice.tel @domi@donotsta.re @dam@0.9.2.e164.arpa you wouldn't steal a nameserver

                    1 Reply Last reply
                    0
                    • domi@donotsta.reD domi@donotsta.re
                      @nay @dam oh my gosh. this hack is GREAT
                      ? Offline
                      ? Offline
                      Guest
                      wrote last edited by
                      #22

                      @domi@donotsta.re @dam@0.9.2.e164.arpa and it still works because nobody has done anything about it... we snatched all the domains we found back then to prevent someone from abusing it, and notified those we could about it back in 2022 to start revocation processes etc. if needed. yet here we are.

                      I'm glad it's being used for shitposts since it still works though 😛

                      domi@donotsta.reD dam@0.9.2.e164.arpaD 2 Replies Last reply
                      0
                      • ? Guest

                        @domi@donotsta.re @dam@0.9.2.e164.arpa and it still works because nobody has done anything about it... we snatched all the domains we found back then to prevent someone from abusing it, and notified those we could about it back in 2022 to start revocation processes etc. if needed. yet here we are.

                        I'm glad it's being used for shitposts since it still works though 😛

                        domi@donotsta.reD This user is from outside of this forum
                        domi@donotsta.reD This user is from outside of this forum
                        domi@donotsta.re
                        wrote last edited by
                        #23
                        @nay @dam yeah, very much good ending 😄 also, props for holding them to prevent abuse!
                        1 Reply Last reply
                        0
                        • dam@0.9.2.e164.arpaD dam@0.9.2.e164.arpa
                          we've seen fedi instances on ip6.arpa
                          we've seen them on in-addr.arpa

                          how about one on the mapped phone number domain of St. Helena (+290)?
                          0.9.2.e164.arpa
                          yes. it's mine now.
                          ? Offline
                          ? Offline
                          Guest
                          wrote last edited by
                          #24

                          @dam @shuppy Wait, how did you get the entire country code?!?

                          ? 1 Reply Last reply
                          0
                          • ? Guest

                            @domi@donotsta.re @dam@0.9.2.e164.arpa and it still works because nobody has done anything about it... we snatched all the domains we found back then to prevent someone from abusing it, and notified those we could about it back in 2022 to start revocation processes etc. if needed. yet here we are.

                            I'm glad it's being used for shitposts since it still works though 😛

                            dam@0.9.2.e164.arpaD This user is from outside of this forum
                            dam@0.9.2.e164.arpaD This user is from outside of this forum
                            dam@0.9.2.e164.arpa
                            wrote last edited by
                            #25
                            @nay @domi oh that is so interesting! i reported it again as well!
                            but yeah, this is pretty much on point!
                            since ns6.icb.co.uk is an NXDOMAIN, all DNS queries and up being sent to ns.enum.org.uk - which i bough 😛
                            1 Reply Last reply
                            0
                            • domi@donotsta.reD domi@donotsta.re
                              @nay @dam oh my gosh. this hack is GREAT
                              dam@0.9.2.e164.arpaD This user is from outside of this forum
                              dam@0.9.2.e164.arpaD This user is from outside of this forum
                              dam@0.9.2.e164.arpa
                              wrote last edited by
                              #26
                              @domi @nay thanks haha! i have been trying to get an e164.arpa domain for quite some time now (the "normal" way, actually found someone who was willing to register an 9.4.e164.arpa (+49, Germany) domain a few days ago!)
                              but i just randomly thought "hey, maybe it's possible to just take over the e164.arpa domain of an entire country - i checked, and it worked! i actually took over 6.4.2.e164.arpa and 7.4.2.e164.arpa as well
                              i reported all of this already
                              but since these were completely unused, i don't see an issue with me having a little fun with one of the domains 😄
                              ? 1 Reply Last reply
                              0
                              • dam@0.9.2.e164.arpaD dam@0.9.2.e164.arpa
                                @domi @nay thanks haha! i have been trying to get an e164.arpa domain for quite some time now (the "normal" way, actually found someone who was willing to register an 9.4.e164.arpa (+49, Germany) domain a few days ago!)
                                but i just randomly thought "hey, maybe it's possible to just take over the e164.arpa domain of an entire country - i checked, and it worked! i actually took over 6.4.2.e164.arpa and 7.4.2.e164.arpa as well
                                i reported all of this already
                                but since these were completely unused, i don't see an issue with me having a little fun with one of the domains 😄
                                ? Offline
                                ? Offline
                                Guest
                                wrote last edited by
                                #27

                                @dam@0.9.2.e164.arpa @domi@donotsta.re you might notice some noise if you have DNS logs enabled - seemingly legacy systems still trying to communicate through it. but realistically it's not like they would've worked regardless as long as you don't reply to these queries

                                dam@0.9.2.e164.arpaD 1 Reply Last reply
                                0
                                • ? Guest

                                  @dam@0.9.2.e164.arpa @domi@donotsta.re you might notice some noise if you have DNS logs enabled - seemingly legacy systems still trying to communicate through it. but realistically it's not like they would've worked regardless as long as you don't reply to these queries

                                  dam@0.9.2.e164.arpaD This user is from outside of this forum
                                  dam@0.9.2.e164.arpaD This user is from outside of this forum
                                  dam@0.9.2.e164.arpa
                                  wrote last edited by
                                  #28
                                  @nay @domi hah
                                  i have actually been logging them myself (that's why i moved it to my own dns infrastructure yesterday), and in over 24h i haven't received an actual NAPTR request on any of the domains (that's the type used in these kinds of queries)
                                  1 Reply Last reply
                                  0
                                  • ? Guest

                                    @dam wait... do you control the corresponding pool of phone number, or dis the registrar just delegate you that domain because "why not" ?

                                    ? Offline
                                    ? Offline
                                    Guest
                                    wrote last edited by
                                    #29

                                    @wolf480pl@mstdn.io @dam@0.9.2.e164.arpa since you didn't get a direct answer, check out:

                                    RE:
                                    https://mice.tel/notes/a6xl7b2poj0b0f51

                                    ? 1 Reply Last reply
                                    0
                                    • ? Guest

                                      @dam @shuppy Wait, how did you get the entire country code?!?

                                      ? Offline
                                      ? Offline
                                      Guest
                                      wrote last edited by
                                      #30

                                      @a@pdx.social @dam@0.9.2.e164.arpa @shuppy@fedi.shuppy.org explained it here!

                                      RE:
                                      https://mice.tel/notes/a6xl7b2poj0b0f51

                                      ? 1 Reply Last reply
                                      0
                                      • domi@donotsta.reD domi@donotsta.re
                                        @nay @dam idk, https://1.6.0.0.8.0.0.b.e.d.0.a.2.ip6.arpa has been up for almost 4 months, my ISP (xoxo bgp.wtf) knows and doesn't mind. no word from anyone higher, so either unnoticed or they don't care too
                                        ? Offline
                                        ? Offline
                                        Guest
                                        wrote last edited by
                                        #31

                                        @domi @dam @nay really wish isps like that existed in canada... any time this one mentions how much it has to pay for relatively basic internet service to people outside the country they always freak out lol
                                        (...it's $65/month for 10/50 with no ipv6. gotta love duopolies)

                                        domi@donotsta.reD 1 Reply Last reply
                                        0
                                        • ? Guest

                                          @a@pdx.social @dam@0.9.2.e164.arpa @shuppy@fedi.shuppy.org explained it here!

                                          RE:
                                          https://mice.tel/notes/a6xl7b2poj0b0f51

                                          ? Offline
                                          ? Offline
                                          Guest
                                          wrote last edited by
                                          #32

                                          @nay @dam @shuppy OMG that is absurd. 🤣 Thanks!

                                          1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups