Hacker News new | ask | show | jobs
by vasuki 2015 days ago
> regularhours.net and holdmydoor.com appeared on a Turkish CERT list in November 2019

> we observed MONARCHY and SNEAKY KESTREL continue to use these domain names in attacks through August 2020.

Interesting to see that the malicious hosts are not in any standard blacklist or safe browsing databases for browsers while Turkey's CERT has been sink-holing them via ISPs on a national level since at least 2019.