frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

Malware in DNS

https://dti.domaintools.com/malware-in-dns/
4•alexrustic•14h ago

Comments

Bender•14h ago
DNS has been used for exfiltration of data, command and control and malware distribution for some time. It's popular because DNS is rarely blocked even when a network is locked down and forces everyone through a corporate monster-in-the-middle proxy.

DNS would also have to be forced through recursive servers that put size and rate limits breaking RFC's in place or at least alert on suspicious behavior which some over-priced corporate firewalls do. The alerts then have to be aggregated where a SOC will detect them and send someone to inspect that persons laptop.

Home users are at the mercy of their DNS provider or setting up their own recursive DNS and putting rate limits in place and their own monitoring. If a home user had no need to fetch TXT records they could censor some or possibly all of them using Unbound.

Example from one of my formerly public recursive DNS servers for their pro-DDOS massive TXT records. I believe this could be done for all domains but have not tested it. The examples below are commonly used in DDoS-Amplification attacks among many other domains with large TXT replies.

    local-zone: ebay.com typetransparent                        
    local-data: 'ebay.com. TXT "[ddos redacted]"'                 
    local-zone: tmz.com typetransparent                               
    local-data: 'tmz.com. TXT "[ddos redacted]"'                       
    local-zone: google.com typetransparent
    local-data: 'google.com. TXT "[ddos redacted]"'

Numbers from my recent job hunt

https://shanebarry.com/numbers-from-my-recent-job-hunt/
1•Shane325•1m ago•0 comments

Theory of Everything: Solved

https://github.com/Cosmolalia/TOE
1•Cosmolalia•15m ago•0 comments

Betting against YouTube Financial Influencers beat the S&P 500 (risky though)?

https://papers.ssrn.com/sol3/papers.cfm?abstract_id=5315526
3•Corgipower12•32m ago•3 comments

Iris-WebP: Fast, efficient WebP encoder

https://halide.cx/iris/
1•Bogdanp•33m ago•0 comments

OpenAI to take cut of ChatGPT shopping sales in hunt for revenues

https://www.ft.com/content/449102a2-d270-4d68-8616-70bfbaf212de
3•mmarian•33m ago•2 comments

MacPlusDancer: Microsoft Plus! Dancers for macOS

https://github.com/samhenrigold/MacPlusDancer
2•archagon•37m ago•1 comments

Show HN: GST Calculator

https://gstcalculator.app
1•hapJam•56m ago•0 comments

1990 Networking: LAN Manager 2.0

https://www.os2museum.com/wp/1990-networking-lan-manager-2-0/
2•ingve•1h ago•0 comments

Original Xbox Hacks: The A20 CPU Gate

https://connortumbleson.com/2021/07/19/the-xbox-and-a20-line/
5•mattweinberg•1h ago•0 comments

Michael "The Grinder" Mizrachi Wins 2025 World Series of Poker Main Event

https://www.pokernews.com/news/2025/07/michael-mizrachi-wins-2025-wsop-main-event-49219.htm
2•indigodaddy•1h ago•0 comments

Watch videos in your preferred language

https://support.google.com/youtube/answer/13339776?hl=en
1•thunderbong•1h ago•1 comments

Show HN: ChainTok – Immortalize your love on Bitcoin's eternal ledger

https://app.chaintok.com
1•zzhan•1h ago•0 comments

Improving OSM lake polygons using Lidar data [video]

https://www.youtube.com/watch?v=4XxX8smv29M
2•marklit•1h ago•0 comments

Photos: The Scale of China's Solar-Power Projects

https://www.theatlantic.com/photography/archive/2025/07/photos-china-solar-power-energy/683488/
5•mhb•1h ago•0 comments

Dreamflow: create flutter apps with text prompts

https://dreamflow.app/
1•flwns•1h ago•0 comments

A Wide Reduction Trick

https://words.filippo.io/wide-reduction/
3•Bogdanp•1h ago•0 comments

International Math Olympiad 2025 Problems: How Well Will AI Do?

https://sugaku.net/content/imo-2025-problems/
4•mauriziocalo•1h ago•0 comments

I've been coding with AI for two years. Here is what I've learned

https://nathanpeck.com/ive-been-coding-with-ai-for-two-years-here-is-what-i-learned/
3•cebert•1h ago•0 comments

Links? Links – Infrequently Noted

https://infrequently.org/2025/07/links/
3•cratermoon•1h ago•0 comments

Cheating? Or the acumen of modern programming? FOSS, "AI", and human conscience

https://gist.github.com/guest271314/17c9daac37101538c9baa6df72aaaefb
2•thunderbong•2h ago•0 comments

LLM Benchmarking Shows Capabilities Doubling Every 7 Months

https://spectrum.ieee.org/llm-benchmarking-metr
3•mparramon•2h ago•0 comments

The Geological Sublime

https://harpers.org/archive/2025/07/the-geological-sublime-lewis-hyde-deep-time/
4•prismatic•2h ago•0 comments

Predicting Earthquakes

https://www.worksinprogress.news/p/a-50-million-foundation-model-to
1•sien•2h ago•0 comments

Garum Sardiniae in Tabula: Rediscovering the Ancient Taste of Roman Cuisine

https://exarc.net/issue-2023-3/at/garum-sardiniae-tabula-rediscovering-ancient-taste-roman-cuisine
1•airstrike•2h ago•0 comments

Mercedes-Benz adds support for Teams app, Intune integration, and Copilot

https://media.mercedes-benz.com/article/931e7af1-2d57-4e90-9e1e-252289e70648
1•throw0101d•2h ago•2 comments

Which Economic Tasks Are Performed with AI? Evidence from Claude Conversations

https://arxiv.org/abs/2503.04761
1•Bogdanp•2h ago•0 comments

The internet keeps getting worse. Let's talk about why [video]

https://www.youtube.com/watch?v=YcW9IB5e3_E
1•raythanwho•2h ago•0 comments

EurIPS: Present NeurIPS Papers in Europe

https://eurips.cc/
1•yza•2h ago•1 comments

NASA won't publish key climate change report online, citing no legal obligation

https://www.space.com/science/climate-change/nasa-wont-publish-key-climate-change-report-online-citing-no-legal-obligation-to-do-so
5•OutOfHere•2h ago•0 comments

Foreign YouTube stars secretly paid by UK Government for propaganda

https://www.thenational.scot/news/25318776.foreign-youtube-stars-secretly-paid-uk-government-propaganda/
6•duke_of_tharsis•2h ago•0 comments