Skip to content
TheDomains
Menu
  • Home
  • Advertise
  • Contact
  • Awards
  • Privacy Policy
  • About Us
Menu

TheRegister Reports 300 Domains Stolen Last Year From 123-Reg

Posted on March 21, 2013
Share on Social Media
xfacebook
Follow us on Social Media
xfacebook

The theregister.co.uk,  is reporting that the theft of 300 domains hosted by 123-Reg last year.

“What appears to be a glaringly obvious security hole has been blamed for the snatching…anyone with a hosting package from 123-Reg and hence an account control panel, simply had to change the final section of the URL manually (to, for example, /someoneelseswebsite.co.uk) to be able to gain access to another site’s emails, name servers and billing.”

“”With access to the admin panel, would-be domain thieves just had to change the contact details for UK registry Nominet to a new email address and then do a failed password request to have a new password sent to the new email address, locking the original owner out”.

Nominet said that its investigations into the issue revealed that “a total of 300 domains had been transferred over to a new registrant in the post-expiry period without the permission of the original registrant”.

“We [have] terminated our registrar agreement with one registrar,” the dot-UK registry said”

 

 

2 thoughts on “TheRegister Reports 300 Domains Stolen Last Year From 123-Reg”

  1. CoZa Nic says:
    March 21, 2013 at 9:19 am

    Wow – scary stuff.
    Makes me wonder if that is what is going on over at MyDomain.com ?
    I had two domains taken last year that they could not explain!!
    And they could not get them back either so they procrastinated till they went into redemption!
    They have a very suspicious setup with SnapNames that allows them to sell off domains to 3rd parties long before Redemption!

  2. kd says:
    March 21, 2013 at 10:59 am

    That is terrible security! Cant believe these guys did not do a security audit of themselves and fix this. Very poor programming on their part!!! I would never trust them after this big of an issue was missed on their part.

Comments are closed.

Search posts

©2026 | Design: Newspaperly WordPress Theme