5 ms·
As far as I can tell the chain of events was: 1. shadowserver had an oopsie (i.e. added a false entry to their list) 2. that list was taken by the prosecutor'
by datenwolf 7y ago
As far as I can tell the chain of events was:
1. shadowserver had an oopsie (i.e. added a false entry to their list)
2. that list was taken by the prosecutor's office to without further checks and by the authority of the prosecutor's office (i.e. state attorneys) of Niedersachsen in Germany and contacted the registrar in India.
3. The registrar transferred the domain
Between each of these steps, there are so many things that went wrong, on so many levels.
Between 1 and 2: Why is the word of some rando org taken as gospel? Without being independently investigated by the office, which sole raison d'être is (independent) investigation of the claims brought to it.
Between 2 and 3: A German prosecutor's office has no authority outside the EU; and even if it did, it could not tell anyone anything to take enforcing actions without a proper court order, even if it's an international request.
Also in the grand scheme of things, considering this was all done to "take down a botnet", this is a path to hell paved with good intentions. How about creating incentive that software and hardware manufacturers get their shit together and secure their shit?