Hacker News new | ask | show | jobs
by mpyne 4231 days ago
> The problem, from my perspective, is that NO ONE is responsible for everything in the .gov namespace.

Actually, the Department of Homeland Security is responsible for the security of .gov (at least in theory). I don't think they have unilateral directive authority to enforce that, however, which is a big problem. But maybe reporting the issue to DHS (whatever their cyber security division is) can rattle something loose.

1 comments

US-CERT handles information security incidents and reports within DHS: https://www.us-cert.gov/report