Hacker News new | ask | show | jobs
DDoS on FreeDNS and Default DNS v2 (status.namecheap.com)
52 points by migmartri 4500 days ago
Message in their customers dashboard.

"Dear Customers, We're experiencing a DDoS attack on our DNSv2 system at the moment - this means that any domains that are using DNSv2 or FreeDNS nameservers may experience intermittent availability issues. We are currently in the process of mitigating the attack and are working hard to ensure a quick resolution. We sincerely apologize for the inconvenience caused."

6 comments

Their customer support is based in Ukraine. I hope their employees will get trough these crazy times unhurt.
Looks like the datacenter is in Kharkiv, about 400km/300mi from the fighting in Kyiv/Kiev.
Interesting. I had no idea.

FWIW, the violence in Kiev is very localized to pretty much the Independence Square. Most people that want to stay out of the protests simply do so.

Then again, I agree and hope everyone there stays safe.

If you're affected, you can switch your domains to their DNSv1. Seems pretty quick for most people.

See the other thread here: http://status.namecheap.com/?p=14846

Note that this works and is pretty easy, just like switching to any other DNS server it can take up to 24 hours for the changes to propagate everywhere.
Be aware, though, to back up your dns records BEFORE you switch. I just lost all records for a domain of mine.
Thank you for posting this!

This was very quick and worked for me.

thanks for posting. Fixed within a minute.
Message in their customers dashboard.

"Dear Customers,

We're experiencing a DDoS attack on our DNSv2 system at the moment - this means that any domains that are using DNSv2 or FreeDNS nameservers may experience intermittent availability issues. We are currently in the process of mitigating the attack and are working hard to ensure a quick resolution. We sincerely apologize for the inconvenience caused."

Previously on the front page earlier today (with a broken link) and lots of comments from users and Namecheap staff:

https://news.ycombinator.com/item?id=7271602

It seems like there have been some very large DDoS attacks recently. Can anybody point me to a link explaining what changed recently that these things suddenly popped up?
If they have a DNS v1 and v2 system, why can't my records be on both? What's the point of having NS1 and NS2 point to the same network?
Fair question, but I'd imagine it's not worth spending time migrating users to a different system if the attacker can simply update the servers they're targeting to follow you there.