Tracking Domains for Cyber Self-Defense
In 2008, hackers hijacked CheckFree.com, which provided online bill payment services and redirected traffic to a website in Ukraine. The fake CheckFree website downloaded malware on CheckFree customers' computers. The malware stole usernames and passwords. Even worse, it infected the computers of customers of minor banks that had partnered with CheckFree. The banks’ websites had been directing their users to CheckFree.
Neither CheckFree nor the banks had been monitoring changes in the WHOIS registries of their websites. If they had, they would have seen the redirection hackers had placed in domain records.