12/05/2008

Is your who.is information still correct

www.who.is  and type in your domainname example mijnbakker.be or IP address

than take the phone and actually phone the guy or girl and say that you want to report a security problem and look what happens.....

We have seen that some very important WHOIS data is not at all correct and even more that it has been incorrect for years....... and what is even more that it has been notified to the responsable people (the telephone number arrives at the cleaning department - security is cleaning but not this way.... -)

The people in the WhoIS list have even been called to the police because they couldn't intervene when a security incident was mentioned to them.

If you have many domains or servers or whatever, you will have to take a day out for it. Eventually re-organise and recentralise it in an office that can treat those problems right away or will always treat with incoming problems (client service) and knows who to forward it to.

As the worm infection on the Belgian internet is worsening it may not be a bad idea to check your whois data and to organize the workflow. It is even a good moment to hold a training. Part of your network has been infected and at some time someone will call to mention it. How long does it take for your people to analyse, get down, clean and get it up again ? It couldn't happen to you ? How many of your windows machines aren't patched yet ? All of them are patched ? You are really sure of that, you have seen those numbers in your patchdistribution software or your networkmonitoring ? No. You just suppose so you don't know.

Only trust what you see with your own eyes.

09:39 | Permalink | Comments (0) | Email this | |  del.icio.us | | Digg! Digg |  Facebook

Post a comment