Was following this work for the past few years. There were several proposals on how to do this from DNS RRs, to HTTP headers and TLS extensions. I appreciate the effort, but wonder if it will actually accomplish anything. Maybe state sponsored/managed campaigns will take emblems into consideration but I doubt criminals will. Plus if there is shared infrastructure, they may be caught in the blast radius anyway. Like attacking satellites (e.g. Starlink) to disrupt communications may also impact NGO operations nearby also using the service.
sybercecurity•35m ago