Hacker News new | ask | show | jobs
by bhtp 3352 days ago
Although, if the bank realized what was happening, they could shutdown their servers immediately instead of needing to regain control of their DNS.
1 comments

The bank's servers were unlikely to be involved at all. If the compromise happened at the registrar level - as the article indicates - the attackers could use their own DNS and web servers.
But then the attackers wouldn't know what icon to show each customer (if the bank were using the system described above by emondi).
That's right. Ah, the dangers of replying to new comments without re-reading their parent. :-)