{"id":3997,"date":"2015-01-06T00:29:46","date_gmt":"2015-01-06T03:29:46","guid":{"rendered":"https:\/\/www.kwell.net\/kwell_blog\/?p=3997"},"modified":"2015-01-05T19:32:38","modified_gmt":"2015-01-05T22:32:38","slug":"los-grandes-tambien-caen-en-este-caso-icann-la-autoridad-global-de-internet","status":"publish","type":"post","link":"https:\/\/www.kwell.net\/kwell_blog\/?p=3997","title":{"rendered":"Los grandes tambi\u00e9n caen: en \u00e9ste caso \u00a1ICANN! la autoridad global de internet"},"content":{"rendered":"<p><a href=\"https:\/\/i0.wp.com\/1.bp.blogspot.com\/-hTv5Bru6aT4\/VJLPEaGX0qI\/AAAAAAAAhQU\/QTPrG4FEOEc\/s1600\/ICANN-Hacked.png\" rel=\"nofollow\"><img decoding=\"async\" loading=\"lazy\" title=\" Internet Authority ICANN Has Been Hacked\" src=\"https:\/\/i0.wp.com\/1.bp.blogspot.com\/-hTv5Bru6aT4\/VJLPEaGX0qI\/AAAAAAAAhQU\/QTPrG4FEOEc\/s728\/ICANN-Hacked.png?resize=396%2C245\" alt=\" Internet Authority ICANN Has Been Hacked\" width=\"396\" height=\"245\" border=\"0\" data-recalc-dims=\"1\" \/><\/a>The <b><i>Internet Corporation for Assigned Names and Numbers (ICANN)<\/i><\/b> has been hacked by unknown attackers that allowed them to gain administrative access to some of the organization&#8217;s systems, the organization confirmed.<\/p>\n<div>The attackers used &#8220;<a href=\"http:\/\/thehackernews.com\/search\/label\/phishing%20attack\" target=\"_blank\"><b><i><span style=\"color: #3d5a99;\">spear phishing<\/span><\/i><\/b><\/a>&#8221; campaign to target sensitive systems operated by ICANN and sent spoofed emails disguised as internal ICANN communications to its staff members. The link in the emails took the staff to bogus login page, where they provided their usernames and passwords with the keys to their work email accounts.<\/div>\n<p><!--more--><\/p>\n<div>The data breach began in late November 2014 and was discovered a week later, ICANN, which oversees the Internet&#8217;s address system, said in a release <a href=\"https:\/\/www.icann.org\/news\/announcement-2-2014-12-16-en\" target=\"_blank\" rel=\"nofollow\"><strong><span style=\"color: #3d5a99;\">published<\/span><\/strong><\/a> Tuesday. ICANN is the organization that manages the global top-level domain system.<\/div>\n<blockquote class=\"tr_bq\"><p>&#8220;<i>We believe a &#8216;spear phishing&#8217; attack was initiated in late November 2014<\/i>,&#8221; Tuesday&#8217;s press release stated. &#8220;<i>It involved email messages that were crafted to appear to come from our own domain being sent to members of our staff. The attack resulted in the compromise of the email credentials of several ICANN staff members.<\/i>&#8220;<\/p><\/blockquote>\n<div>With those details, the hackers then successfully managed to access a number of systems within ICANN, including the <a href=\"https:\/\/czds.icann.org\/en\" target=\"_blank\" rel=\"nofollow\"><strong><span style=\"color: #3d5a99;\">Centralized Zone Data System<\/span><\/strong><\/a> (CZDS), the wiki pages of the ICANN <a href=\"https:\/\/gacweb.icann.org\/display\/gacweb\/Governmental+Advisory+Committee\" target=\"_blank\" rel=\"nofollow\"><strong><span style=\"color: #3d5a99;\">Governmental Advisory Committee<\/span><\/strong><\/a> (GAC), the domain registration <a href=\"http:\/\/whois.icann.org\/\" target=\"_blank\" rel=\"nofollow\"><strong><span style=\"color: #3d5a99;\">Whois<\/span><\/strong><\/a> portal, and the <a href=\"https:\/\/www.icann.org\/news\/blog\" target=\"_blank\" rel=\"nofollow\"><strong><span style=\"color: #3d5a99;\">ICANN blog<\/span><\/strong><\/a>.<\/div>\n<div><\/div>\n<div id=\"insidearticlead\"><!-- Banner inside article -->The CZDS is a service used by domain registries and other interested parties to request access to the DNS root zone files and sensitive data associated with users\u2019 online accounts. This provided hackers access to zone files and sensitive information such as names, postal addresses, email addresses, fax and phone numbers, usernames and cryptographically hashed passwords of account holders who used those systems.<\/div>\n<div id=\"aim24575216131231281050\">\n<div><\/div>\n<div>The zone files contain sensitive and valuable information, including domain names, the name server names associated with those domains and the IP addresses for the name servers.<\/div>\n<div>In an email sent to every CZDS user, ICANN has warned that &#8220;the attacker obtained administrative access to all files in the CZDS including copies of the zone files in the system. The information you provided as a CZDS user might have been downloaded by the attacker. This may have included your name, postal address, email address, fax and telephone numbers, and your username and password.&#8221;<\/div>\n<div><\/div>\n<div>Since the passwords were salted cryptographic hashes that are unlikely to use by the attacker, but ICANN is urging users to immediately change their accounts passwords just to be on the safer side. The organization is also providing notices to users whose personal information may have been compromised.<\/div>\n<div><\/div>\n<div>The organization has found no evidence of compromise of any Internet Assigned Numbers Authority (IANA) systems and the other systems. The IANA is also a part of ICANN which performs the actual management of the DNS root zone, globally-unique names and numbers.<\/div>\n<div>\n<blockquote class=\"tr_bq\"><p>&#8220;<i>Based on our investigation to date, we are not aware of any other systems that have been compromised, and we have confirmed that this attack does not impact any IANA-related system<\/i>s,&#8221; ICANN stated.<\/p><\/blockquote>\n<\/div>\n<div>ICANN had implemented enhanced security measures earlier this year, which likely helped prevent further damage from the cyber-attack, the officials investigating the issue said.<\/div>\n<\/div>\n<div class=\"sharedaddy sd-sharing-enabled\"><div class=\"robots-nocontent sd-block sd-social sd-social-icon-text sd-sharing\"><h3 class=\"sd-title\">Comparte esto:<\/h3><div class=\"sd-content\"><ul><li class=\"share-facebook\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-facebook-3997\" class=\"share-facebook sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=facebook\" target=\"_blank\" title=\"Haz clic para compartir en Facebook\" ><span>Facebook<\/span><\/a><\/li><li class=\"share-twitter\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-twitter-3997\" class=\"share-twitter sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=twitter\" target=\"_blank\" title=\"Haz clic para compartir en Twitter\" ><span>Twitter<\/span><\/a><\/li><li class=\"share-email\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-email sd-button share-icon\" href=\"mailto:?subject=%5BEntrada%20compartida%5D%20Los%20grandes%20tambi%C3%A9n%20caen%3A%20en%20%C3%A9ste%20caso%20%C2%A1ICANN%21%20la%20autoridad%20global%20de%20internet&body=https%3A%2F%2Fwww.kwell.net%2Fkwell_blog%2F%3Fp%3D3997&share=email\" target=\"_blank\" title=\"Haz clic para enviar un enlace por correo electr\u00f3nico a un amigo\" data-email-share-error-title=\"\u00bfTienes un correo electr\u00f3nico configurado?\" data-email-share-error-text=\"Si tienes problemas al compartir por correo electr\u00f3nico, es posible que sea porque no tengas un correo electr\u00f3nico configurado en tu navegador. Puede que tengas que crear un nuevo correo electr\u00f3nico t\u00fa mismo.\" data-email-share-nonce=\"5461f30fdc\" data-email-share-track-url=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=email\"><span>Correo electr\u00f3nico<\/span><\/a><\/li><li class=\"share-jetpack-whatsapp\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-jetpack-whatsapp sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=jetpack-whatsapp\" target=\"_blank\" title=\"Haz clic para compartir en WhatsApp\" ><span>WhatsApp<\/span><\/a><\/li><li class=\"share-skype\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-skype-3997\" class=\"share-skype sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=skype\" target=\"_blank\" title=\"Haz clic para compartir en Skype\" ><span>Skype<\/span><\/a><\/li><li class=\"share-print\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-print sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997\" target=\"_blank\" title=\"Haz clic para imprimir\" ><span>Imprimir<\/span><\/a><\/li><li class=\"share-linkedin\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-linkedin-3997\" class=\"share-linkedin sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=linkedin\" target=\"_blank\" title=\"Haz clic para compartir en LinkedIn\" ><span>LinkedIn<\/span><\/a><\/li><li class=\"share-end\"><\/li><\/ul><\/div><\/div><\/div>","protected":false},"excerpt":{"rendered":"<p>The Internet Corporation for Assigned Names and Numbers (ICANN) has been hacked by unknown attackers that allowed them to gain administrative access to some of the organization&#8217;s systems, the organization confirmed. The attackers used &#8220;spear phishing&#8221; campaign to target sensitive systems operated by ICANN and sent spoofed emails disguised as internal ICANN communications to its &hellip;<br \/><a href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997\">Read more <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n<div class=\"sharedaddy sd-sharing-enabled\"><div class=\"robots-nocontent sd-block sd-social sd-social-icon-text sd-sharing\"><h3 class=\"sd-title\">Comparte esto:<\/h3><div class=\"sd-content\"><ul><li class=\"share-facebook\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-facebook-3997\" class=\"share-facebook sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=facebook\" target=\"_blank\" title=\"Haz clic para compartir en Facebook\" ><span>Facebook<\/span><\/a><\/li><li class=\"share-twitter\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-twitter-3997\" class=\"share-twitter sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=twitter\" target=\"_blank\" title=\"Haz clic para compartir en Twitter\" ><span>Twitter<\/span><\/a><\/li><li class=\"share-email\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-email sd-button share-icon\" href=\"mailto:?subject=%5BEntrada%20compartida%5D%20Los%20grandes%20tambi%C3%A9n%20caen%3A%20en%20%C3%A9ste%20caso%20%C2%A1ICANN%21%20la%20autoridad%20global%20de%20internet&body=https%3A%2F%2Fwww.kwell.net%2Fkwell_blog%2F%3Fp%3D3997&share=email\" target=\"_blank\" title=\"Haz clic para enviar un enlace por correo electr\u00f3nico a un amigo\" data-email-share-error-title=\"\u00bfTienes un correo electr\u00f3nico configurado?\" data-email-share-error-text=\"Si tienes problemas al compartir por correo electr\u00f3nico, es posible que sea porque no tengas un correo electr\u00f3nico configurado en tu navegador. Puede que tengas que crear un nuevo correo electr\u00f3nico t\u00fa mismo.\" data-email-share-nonce=\"5461f30fdc\" data-email-share-track-url=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=email\"><span>Correo electr\u00f3nico<\/span><\/a><\/li><li class=\"share-jetpack-whatsapp\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-jetpack-whatsapp sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=jetpack-whatsapp\" target=\"_blank\" title=\"Haz clic para compartir en WhatsApp\" ><span>WhatsApp<\/span><\/a><\/li><li class=\"share-skype\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-skype-3997\" class=\"share-skype sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=skype\" target=\"_blank\" title=\"Haz clic para compartir en Skype\" ><span>Skype<\/span><\/a><\/li><li class=\"share-print\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"\" class=\"share-print sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997\" target=\"_blank\" title=\"Haz clic para imprimir\" ><span>Imprimir<\/span><\/a><\/li><li class=\"share-linkedin\"><a rel=\"nofollow noopener noreferrer\" data-shared=\"sharing-linkedin-3997\" class=\"share-linkedin sd-button share-icon\" href=\"https:\/\/www.kwell.net\/kwell_blog\/?p=3997&amp;share=linkedin\" target=\"_blank\" title=\"Haz clic para compartir en LinkedIn\" ><span>LinkedIn<\/span><\/a><\/li><li class=\"share-end\"><\/li><\/ul><\/div><\/div><\/div>","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"jetpack_publicize_message":"","jetpack_is_tweetstorm":false,"jetpack_publicize_feature_enabled":true},"categories":[1],"tags":[19],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/posts\/3997"}],"collection":[{"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3997"}],"version-history":[{"count":1,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/posts\/3997\/revisions"}],"predecessor-version":[{"id":3998,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=\/wp\/v2\/posts\/3997\/revisions\/3998"}],"wp:attachment":[{"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3997"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3997"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kwell.net\/kwell_blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3997"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}