Go To Email Marketing Home | Add to Favorites
Information Highwaymen And Your Domain
You go to work every day at the store you own, and one morning, your key to the door doesn't work. You look in the window, and the display items have changed. A stranger is behind the counter. But when you call the police, they can't do anything because the company papers now indicate that the store belongs to the stranger.
The above scenario isn't likely to happen with a bricks-and-mortar store. Because of insecurities in the domain registration system, however, information highwaymen could take over your online business.
As with identity theft, domain thieves steal your identity -- the identity used to register and configure your domain name. After that, your website, your email, your online business, and possibly your reputation are theirs.
Domain names at risk of theft
While theft is a risk with all domain names, domains most at risk are more valuable ones. Domains with dot com extensions have a higher resale value than domains with other extensions, and domains with high traffic or valuable keywords are also more likely to be targets.
The motive behind domain hijacking is usually monetary, but it may be personal. If anyone wants to attack you, stealing your domain name is one way to do it.
How domain theft happens
When domain hijackers steal your domain, they gain access to the domain's Whois records. They can modify the domain's nameservers so that the domain points to a different server. They can also transfer the domain to a different registrar.
Either way, site visitors will find themselves at the website of the domain hijacker instead of at your site. All domain email will go to or through the other server instead of to you. All you'll have left is a website without public access because your domain isn't pointing to it any more.
How can this happen?
Domain hijacking methods - Domain hijackers send forged faxes to the domain registrar, impersonating the registrants. - Domain hijackers hack into the accounts of free email addresses listed in Whois records and use those addresses to obtain domain account information. - Domain hijackers send out fraudulent email renewal notices, and registrants unknowingly transfer their domains to the thieves.
Registrar non-action
- The gaining registrar (the registrar that the domain is transferred to) doesn't obtain approval from the domain name registrant or administrative contact as required by ICANN Inter-Registrar Transfer Policy. - The losing registrar (that the domain is transferred from) doesn't notify the registrant of the transfer during the five-day pending transfer period. During this period, the registrant can cancel or deny approval of the domain transfer --- if the registrar notifies the registrant of it.
Registrant carelessness - The registrant forgets to update Whois details or to renew the account. - Someone with access to the registrant's records steals the information.
Domain name disputes
If you discover that your domain has been hijacked, contact your registrar immediately. If your registrar is unable to resolve the situation, the ICANN (Internet Corporation for Assigned Names and Numbers) Transfer Dispute Resolution Policy (TDRP) applies.
By going the above arbitration route, you don't have to argue your case in person. On the other hand, all you can get back in the process is your domain (and not necessarily that). For a lot more money, you can take your case to court, where you can seek compensation for damages in addition to the return of your domain. This process takes more time, however.
You may be able to proceed both ways – get your domain back via ICANN domain dispute resolution procedures and then go to court to collect damages. You can also appeal a domain arbitrator's decision in court.
How to protect your domain name
Protecting a domain name is similar to protecting a bricks-and-mortar store from burglary. With a combination of precautions in place, thieves will find it difficult or impossible to gain access.
Your domain account information - List your name for the administrative contact, and use your full name. - Create a complex password with letters (both upper case and lower case) and numbers. Don't use any real words or personal information in it. Make it long. Make it unique – don't use the same password for anything else. Change it periodically. - Keep your domain login name, account number, and password in a place where only trusted people can access it. - Use a valid contact email address that doesn't use the domain it's for. Be sure that this email account also has a complex password. If you're going to be offline for more than a few days, have someone else check the email for this account. - Don't use a free email address such as a Hotmail or Yahoo address. Domain hijackers target domains with free email addresses in the Whois records. After they've cracked your email account password, the support you need to get your email account back will probably be slow, giving the hijackers plenty of time to take over your domain. - Update your Whois record whenever the information in it changes.
Your domain account features - Choose a domain registrar that sends registrants transfer pending notifications when a domain transfer is taking place. - Consider protecting your Whois details with a registrar that offers a private domain name record. With this feature, your registrar's data appears with your Whois record rather than your data. The downside of using this feature is that your business may have less credibility because you're hiding who you are. - Register your domain for a long time period, and set up calendar reminders to renew it before it expires. - Set up your domain to be renewed automatically if your registrar offers this feature. - Use the Registrar-lock mechanism if it's available through your registrar. When a domain is locked, it cannot be modified or transferred unless the registrant unlocks it or follows the domain transfer process.
Other domain security measures - Set up a free Whois monitoring alert email service and add your domain to your monitoring list. You will receive email notifications whenever the expiration date, registrar, or status of a monitored domain changes. (Whois does not have data on all domain extensions.) - Make sure that someone checks your website every few days, preferably daily.
About the author:
Lois S. is a Technical Executive Writer for http://www.websitesource.com and http://www.lowpricedomains.com with experience in the website hosting industry.
Source: Article Directory
How To Avoid Getting Hooked By Pfishing "Pfishing", sometimes spelled "Phishing", is a word that's used to describe amethod of identity theft where con men use fake e-mail that looks like it comesfrom legitimate sources. This e-mail is designed to hoodwink you into givingout personal and financial information. Once the scammers receive yourinformation they use it to either clone your identity or to empty out your bankaccounts and run up your charge cards. Here are some tips on how to avoidbecoming the next victim.1. Never respond to an e-mail that looks like it came from your bank or any ofyour credit card issuers no matter how official it appears. Phishing scame-mails will tell you that there is some problem with your account and that youhave to click on an embedded link to correct that problem. They may threaten toclose your acc...
Email Communication Is Dying. What's Next? Currently there are 3 main types of broadcast Internet messaging systems that you can use to deliver newsletters, e-zines and other informational materials to your customers.I'm not going to cover here internal or intranet messaging systems, the main focus of this article is on the virtual world outside your local/corporate network.The main Internet Broadcasting Systems are:- Email broadcasts that are sent throu...
How To Tap The Profit-producing Power Of Pay-per-click Search Engines To Drive Qualified Traffic To Your Website... By ©Thom Reece 2004 All Rights ReservedI have been a strong advocate and user of PPC's (pay-per-click search engines) for several years now.I have thousands of keywords and phrases on bid at a number of PPC search engines and, as a result of managing and track...
|
 |
 |
 |
3 Ways To Stop Affiliate Link "hijackers" (c)2002 Jim Edwards - all right reserved-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-Let's face the facts! Almost everyone online today is looking to make or save a buck any way they can. In the past, most of the people who clicked on your affiliate links used to purchase without a second thought... but, as times get tougher online, it seems a growing number won't!As money g... |  |
| Want To Find Someone Lost In Space And Time? The Internet's Here Can you remember a friend or relative’s name that has disappeared from the Earth? You haven’t had contact with them in decades, but now you want to find out where they are so you can get in touch. In the old days this would have been nearly impossible, but now things are different. There are many different ways to find people lost in ‘space and time’ on the Internet. Some are free and some cost, but the amount of personal information you can find about any individual in the world is astounding.Besides the simple Intern... |  |
| More Productive Internet Lawyers Websites Does your firm’s website have a form link for potential legal clients to send inquires through to your law firm,? If so, you may be wasting your, or your assistant’s, tim... |  |
| Cleverdocs For Ifas - Compliance, Relationship And Document Management System Specifically For Independent Financial Advisors Cost of compliance with new FSA regulations can now be reducedThe additional cost of compliance with the new FSA (Financial Services Authority) regulations for insurers can now be contained thanks to Accounting Products (www.cleverdocs.co.uk) enhanced customer relationship/document managemen... |  |
| Does Google Hire "mad Scientists?" Online search giant, Google, often tests the waters for newservices by rolling out a "beta" (first) version of an ideato gauge public reaction. By employing this strategy, it's easy to imagine a buildingfull of creative, "mad scientist" types cooking up thelatest and greatest online gizmos. In fact, you can take a peek at what's cooking at Google bylogging on to http://labs.google.com. There you'll find glimpses of the true "bleeding edge"technology Google thinks will shape the way we useinformation on the Internet in the very near future. ** Online Video Search **Log on to http://video.google.com to see the next step inGoogle's quest to become the world's foremost repos... |  |
|
|