[At-Large] Sonoma Valley Hospital loses 3-letter domain name to hijackers

Christian de Larrinaga cdel at firsthand.net
Fri Aug 23 21:54:40 UTC 2019


Presumably svh.com can be unglued from bizcn and returned to sanoma 
valley hospital registrar of choice?

the question then is what process is necessary to show that the domain 
was transferred illicitly?

C

John More via At-Large wrote on 23/08/2019 20:20:
> +1
> 
> John More
> 
>> On Aug 23, 2019, at 11:08 AM, Evan Leibovitch <evan at telly.org 
>> <mailto:evan at telly.org>> wrote:
>>
>> On Fri, 23 Aug 2019 at 10:59, Olivier MJ Crépin-Leblond <ocl at gih.com 
>> <mailto:ocl at gih.com>> wrote:
>>
>>     With all the safeguards in use, that's really surprising.
>>
>>
>> Surprising? I would say scandalous.
>> And it's an abuse vector that ought to concern At-Large far more than 
>> gTLD allocation.
>>
>> Why doesn't ICANN have an appeals mechanism that allows maliciously 
>> redirected gTLDs to be returned to their original owner if malice can 
>> be demonstrated? Since we now now that "all the safeguards in use" can 
>> still be circumvented, why isn't there an after-the-fact remedy?
>>
>> Yes, it could be messy. But certainly you must all realize that if 
>> this goes unchecked it only opens the door to a new form of ransomware 
>> along side "we've encrypted your site".
>>
>> - Evan
>>
>>
>>
>>
>>     Best,
>>
>>     Olivier
>>
>>     On 23/08/2019 16:46, Dev Anand Teelucksingh wrote:
>>>     https://www.sonomanews.com/home/a1/9924307-181/hospital-website-hijacked-by-pirates?sba=AAS
>>>
>>>     Sonoma Valley Hospital’s website was hacked earlier this month,
>>>     forcing the change of its URL and email addresses, hospital
>>>     officials announced last week.
>>>
>>>     On Tuesday, Aug. 6, at 6:30 p.m., the hospital’s domainsvh.com
>>>     <http://svh.com/>was “maliciously acquired,” said Celia Kruse de
>>>     la Rosa, the hospital’s communications director.
>>>
>>>     Hospital CEO Kelly Mather added: “The hijacking of our domain
>>>     name was surprising and we are finding out, not unusual for
>>>     highly valuable three letter domain names such as ‘svh.com
>>>     <http://svh.com>.’”
>>>
>>>     When it became apparent that the hospital would not get the
>>>     domain name returned, they “began migrating all internet
>>>     connectivity to the new and current
>>>     domain:sonomavalleyhospital.org
>>>     <http://sonomavalleyhospital.org/>(web) and
>>>     @sonomavalleyhospital.org
>>>     <http://sonomavalleyhospital.org/>(email),” de la Rosa said.
>>>
>>>
>>>     _______________________________________________
>>>     At-Large mailing list
>>>     At-Large at atlarge-lists.icann.org
>>>     <mailto:At-Large at atlarge-lists.icann.org>
>>>     https://atlarge-lists.icann.org/mailman/listinfo/at-large
>>>
>>>     At-Large Official Site:http://atlarge.icann.org <http://atlarge.icann.org/>
>>>     _______________________________________________
>>>     By submitting your personal data, you consent to the processing of your personal data for purposes of subscribing to this mailing list accordance with the ICANN Privacy Policy (https://www.icann.org/privacy/policy) and the website Terms of Service (https://www.icann.org/privacy/tos). You can visit the Mailman link above to change your membership status or configuration, including unsubscribing, setting digest-style delivery or disabling delivery altogether (e.g., for a vacation), and so on.
>>
>>     -- 
>>     Olivier MJ Crépin-Leblond, PhD
>>     http://www.gih.com/ocl.html
>>
>>     _______________________________________________
>>     At-Large mailing list
>>     At-Large at atlarge-lists.icann.org
>>     <mailto:At-Large at atlarge-lists.icann.org>
>>     https://atlarge-lists.icann.org/mailman/listinfo/at-large
>>
>>     At-Large Official Site:http://atlarge.icann.org
>>     <http://atlarge.icann.org/>
>>     _______________________________________________
>>     By submitting your personal data, you consent to the processing of
>>     your personal data for purposes of subscribing to this mailing
>>     list accordance with the ICANN Privacy Policy
>>     (https://www.icann.org/privacy/policy) and the website Terms of
>>     Service (https://www.icann.org/privacy/tos). You can visit the
>>     Mailman link above to change your membership status or
>>     configuration, including unsubscribing, setting digest-style
>>     delivery or disabling delivery altogether (e.g., for a vacation),
>>     and so on.
>>
>>
>>
>> --
>> Evan Leibovitch, Toronto Canada
>> @evanleibovitch or @el56
>> _______________________________________________
>> At-Large mailing list
>> At-Large at atlarge-lists.icann.org <mailto:At-Large at atlarge-lists.icann.org>
>> https://atlarge-lists.icann.org/mailman/listinfo/at-large
>>
>> At-Large Official Site:http://atlarge.icann.org 
>> <http://atlarge.icann.org/>
>> _______________________________________________
>> By submitting your personal data, you consent to the processing of 
>> your personal data for purposes of subscribing to this mailing list 
>> accordance with the ICANN Privacy Policy 
>> (https://www.icann.org/privacy/policy) and the website Terms of 
>> Service (https://www.icann.org/privacy/tos). You can visit the Mailman 
>> link above to change your membership status or configuration, 
>> including unsubscribing, setting digest-style delivery or disabling 
>> delivery altogether (e.g., for a vacation), and so on.
> 
> 
> 
> _______________________________________________
> At-Large mailing list
> At-Large at atlarge-lists.icann.org
> https://atlarge-lists.icann.org/mailman/listinfo/at-large
> 
> At-Large Official Site: http://atlarge.icann.org
> _______________________________________________
> By submitting your personal data, you consent to the processing of your personal data for purposes of subscribing to this mailing list accordance with the ICANN Privacy Policy (https://www.icann.org/privacy/policy) and the website Terms of Service (https://www.icann.org/privacy/tos). You can visit the Mailman link above to change your membership status or configuration, including unsubscribing, setting digest-style delivery or disabling delivery altogether (e.g., for a vacation), and so on.
> 


-- 
Christian de Larrinaga


More information about the At-Large mailing list