frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

The ghost domain problem in DNS, and what we're doing about it

https://ohdear.app/news-and-updates/the-ghost-domain-problem-in-dns-and-what-were-doing-about-it
7•Mojah•3d ago

Comments

johnhtodd•1h ago
One approach to solving this for a very limited set of intervals is to actually block namespace that has been removed at the registry level. There is a paper on this from Raffaele Sommese:

https://static.sched.com/hosted_files/icann83/5b/Rafaelle%20...

Quad9 (9.9.9.9) consumes this feed from U Twente of "just deleted" names, as most of them are malicious, and blocking them even if they are NOT malicious causes zero harm. Currently, this is only names that are very short-lived, so may not catch the longer intervals where names are deleted and become ghosts.

Another model using something similar would be to specifically clear those "just-deleted" name cached entries out of the recursive resolver, but that is expensive. Also, with blocking instead of removal it is possible to get high-level metrics on how often those are being abused where NXDOMAIN tracking is not measured in the same dimensions.

(disclaimer: I work for Quad9)

quuxplusone•41m ago
From my read of the article, this isn't a problem "in DNS." OP runs an uptime monitoring service that purports to check whether DNS can resolve your domain — but today OP learned that because he's hitting his ISP's recursive resolver, he doesn't notice downtime until the TTL of the previous response expires.

Solution (which everyone else does, and OP has now implemented): don't use your ISP's recursive resolver! Run your own instance of bind9 or whatever, with the cache disabled. Or it seems like `dig +trace` would probably work, too.

"Cached resources remain visible for their whole TTL, even if the original becomes unreachable or changes" seems like one of the very first principles someone should learn when deciding to go into business selling an uptime monitoring service.

It's not a "ghost domain," it's a Time-To-Live field!

A backdoor in a LinkedIn job offer

https://roman.pt/posts/linkedin-backdoor/
704•lwhsiao•6h ago•146 comments

Banned Book Library in a Wi-Fi Smart Light Bulb

https://www.richardosgood.com/posts/banned-book-library/
161•sohkamyung•3h ago•56 comments

Iroh 1.0

https://www.iroh.computer/blog/v1
947•chadfowler•10h ago•285 comments

TinyWind: A pixel pirate sailing game with real wind physics (380k+ kms sailed)

https://tinywind.io
607•tinywind•9h ago•124 comments

I Love the Computer

https://michaelenger.com/blog/i-love-the-computer/
140•speckx•5h ago•92 comments

Ask HN: Has anyone replaced Claude/GPT with a local model for daily coding?

693•cloudking•11h ago•338 comments

Amazon Announces Multibillion-Dollar Data Center in Missouri

https://www.narracomm.com/amazon-announces-multibillion-dollar-data-center-in-missouri/
21•thelonelyborg•1h ago•6 comments

Why I email complete strangers

https://www.goodinternetmagazine.com/why-i-email-complete-strangers/
73•karakoram•4h ago•39 comments

Peopleless economy? Not technically impossible

https://gmalandrakis.com/writings/ad-economicum.html
94•l0new0lf-G•4h ago•163 comments

My Homelab AI Dev Platform

https://rsgm.dev/post/ai-dev-platform/
240•rsgm•10h ago•47 comments

Hetzner Price Adjustment

https://docs.hetzner.com/general/infrastructure-and-availability/price-adjustment/#cloud-servers
336•tuhtah•12h ago•481 comments

US battery manufacturing output continues to break records

https://fred.stlouisfed.org/series/IPG33591S
159•epistasis•5h ago•132 comments

Reviews have become expensive, rewrites have become cheap

http://ishmeetbindra.com/posts/reviews-have-become-expensive-rewrites-have-become-cheap/
11•arzh2•1h ago•8 comments

What every coder should know about Gamma Correction

https://blog.johnnovak.net/2016/09/21/what-every-coder-should-know-about-gamma/
58•sph•2d ago•19 comments

Fox to buy Roku

https://www.wsj.com/business/deals/fox-roku-deal-f6e564f9
275•thm•13h ago•369 comments

What job interviews taught me about Kubernetes

https://notnotp.com/notes/what-job-interviews-taught-me-about-kubernetes/
89•chmaynard•5h ago•81 comments

An O(x)Caml book that runs

https://kcsrk.info/ocaml/oxcaml/teaching/nptel/llm/2026/06/13/an-oxcaml-book-that-runs/
25•anirudh24seven•2d ago•9 comments

Game Engine White Papers Commander Keen

https://forgottenbytes.net/commander_keen.html
160•mfiguiere•8h ago•53 comments

How TimescaleDB compresses time-series data

https://roszigit.com/en/blog/timescaledb-compression-hypercore
116•lkanwoqwp•8h ago•14 comments

Salesforce to Acquire Fin (formerly Intercom) for $3.6B

https://www.salesforce.com/news/press-releases/2026/06/15/salesforce-signs-definitive-agreement-t...
276•colesantiago•13h ago•208 comments

Copper transport drug restores memory and clears toxic Alzheimer's proteins

https://www.monash.edu/news/articles/copper-drug-restores-memory-and-clears-toxic-alzheimers-prot...
252•bookofjoe•11h ago•96 comments

Launch HN: Drafted (YC P26) – Models for residential architecture

42•PrimalNick•9h ago•51 comments

Cohere's First Model for Developers

https://cohere.com/blog/north-mini-code
11•hmokiguess•4d ago•3 comments

Claude Corps

https://www.anthropic.com/news/claude-corps
83•Mustan•8h ago•59 comments

Show HN: Fata – Spaced repetition to fight skill rot from AI coding

https://fata.dev
78•djoume•4d ago•44 comments

Factoring "short-sleeve" RSA keys with polynomials

https://blog.trailofbits.com/2026/06/12/factoring-short-sleeve-rsa-keys-with-polynomials/
74•ledoge•3d ago•1 comments

Making glass-to-metal seals for home­made vacuum tubes

https://maurycyz.com/projects/glass/1/
129•zdw•1d ago•41 comments

How memory safety CVEs differ between Rust and C/C++

https://kobzol.github.io/rust/2026/06/15/how-memory-safety-cves-differ-between-rust-and-c-cpp.html
108•nicoburns•9h ago•110 comments

Boot Naked Linux

https://nick.zoic.org/art/boot-naked-linux/
94•abnercoimbre•10h ago•48 comments

Show HN: Vet turned founder, AI lawn diagnosis

https://grassdx.com/
38•andrewbr•8h ago•38 comments