15 ms·
Great. There's a Dutch bank called ING. I can't wait for all the phish.ing to start. IMHO all those new TLDs are just a huge mistake and a blatant money-grab.
by Sander_Marechal 3y ago
Great. There's a Dutch bank called ING. I can't wait for all the phish.ing to start. IMHO all those new TLDs are just a huge mistake and a blatant money-grab.
- ahmedfromtunis 3y agoThey already got the bank.ing domain name.
- agilob 3y agobut do they have fuckof\f.ing for submitting complaints? Edit: HN doesn't accept FO as one word, it replaces the last `f` with `i`. Try it yourself.
- cbsks 3y agoSeems to work for me: Fuckoff fuckoff.ing
- jackbravo 3y agoI only see *** ***.ing
- rad_gruchalski 3y agoYou might be mitm-ed. there’s no space in the original.
- Cyphase 3y agoIt must be Anton's son.
- deleted 3y ago[deleted]
- mindcrime 3y agoIs this just a trick to see how many people you can get to type 'fuckoff'? :-)
- agilob 3y agoLet me test it again... Edit: No I swear, when I typed fuckingoff.ing and post the comment it shows as fuckingofi.ing to me. I edited the post a dozen of times and it always displayed something else. I tested it even on two browsers!
- gpderetta 3y agohunter2 I don't understand, it seems to work for me.
- MongoTheMad 3y agoI am old. I forgot about this hunter2 password filter phish reference.
- KeplerBoy 3y agoAnd they use it to remind people that the .ing tld is a bad idea.
- moehm 3y agoWith this gem on their side: > While bank.ing is managed by ING, please be aware that any other domain ending with .ing is not an ING website.
- SXX 3y agoSadly phish.ing is over $1000 / year.
- have_faith 3y agoBut think of the return
- jowea 3y agoThink of how funny it will be when you send out a social engineering training test email with that URL to your company and see who falls for it.
- codetrotter 3y agohttps://we.are.totally.not.phish.ing/this-is-legit/link.php?really=just-click-it&fill-in=your-pii&submit=true
- dottjt 3y agoWouldn't it be called fish.ing instead, so you'd trick users.
- koolba 3y agoThe real money is in spearfish.ing.
- valianteffort 3y ago[flagged]
- phkahler 3y ago>> IMHO all those new TLDs are just a huge mistake and a blatant money-grab. Especially with this one. There is no room for competition since each verb can only be used once with the ing suffix. Well, competition for who is willing to pay the most, but from the consumer side there can only be one URL.
- toast0 3y agoi mean, if you can't get fuck.ing/cool, you can go with reallyfuck.ing/cool or getsurf.ing gosurf.ing learnsurf.ing or justhang.ing/out etc I think I'm at my limit of dumb domain names for no reason though, so I'll pass on this round.
- supermatt 3y agoReallyfuckingcool.net or .org available, same for getsurfing, learnsurfing and justhangingout. With all these domains there’s no real point unless you are getting a dictionary word or a specific name, imho.
- FireInsight 3y agoreallyfuckingcool.ing
- zymhan 3y agoGreat for an HVAC company
- pdntspa 3y agoWhich just outlines how it is a money-grab for existing property owners. Yet another stupid vanity domain you're forced to add to your portfolio!
- marcus_holmes 3y agoI wonder if we're at the point that the costs of registering a new TLD are immediately recouped from the set of large businesses that must register their name in every TLD?
- expertentipp 3y agoMobile app is already first class citizen at ING in some EU countries. One is unable to make transactions or even is locked out completely from all online channels after losing access to their mobile app, or if their app simply stops responding on tapping the "Confirm" button. Web is merely second class citizen. No idea how they arrived to this retarded architectue. Submitting any kind of architectural feedback to a bank is hopeless and helpless, these fuckers always know better.
- taway1237 3y ago> No idea how they arrived to this retarded architecture 2FA is known to increase security drastically. It's easy to understand why it's a good idea. EU banks in particular do this because 2FA for banks is mandated by a EU level directive. > Submitting any kind of architectural feedback to a bank is hopeless and helpless, these fuckers always know better. In this case they clearly do.
- aidenn0 3y agoThere are lots of options for 2FA that don't require me to install a bloated and buggy app that only supports one bank.
- Tijdreiziger 3y agoYou don't have to install it, you can ask them to send you a physical 2FA device instead.
- expertentipp 3y agoThey charge money for physical 2FA device. https://www.ing.de/hilfe/auftraege-freigeben/phototan/ https://www.ing.de/hilfe/auftraege-freigeben/phototan/
- expertentipp 3y agoIn at least one EU country the only available free of charge second factor of 2FA at ING is their FULL MOBILE BANKING APP. You're posting a comment at HN explaining that "mobile banking app is 2FA because security because EU", are you working there?
- heipei 3y agoUgh, when I saw the HN headline about this TLD I thought it belonged to ING Group, just like .barclays and .chase belong to their corporate owners. Just shows how suited this TLD is for phishing...
- s3p 3y agoDon't they sell .zip TLDs now too?
- rekoil 3y agoYes, they do, huge mistake ...but a lot of fun!
- lolsowrong 3y agoExplain why it’s a huge mistake, please.
- wholinator2 3y agoI think the idea is ambiguity between a zip file from your coworkers website and an entirely separate phishing website which downloads an entirely different zip file with a malicious payload. Anything that introduces unnecessary and previously unforseen ambiguity to the olds is just another path to filling the internet with scams
- Clamchop 3y agoBrowser vendors should just splash users with one of those click-through security warnings. Make it bright yellow. I'd be very entertained by drama from owners of those domains, but in my opinion, such a thing would be completely justified.
- afavour 3y agoHere’s the problem: the biggest browser vendor is the one selling the domains!
- ddlsmurf 3y agoor maybe they'll buy a whole bunch of insult domains imveryunhappywith.ing dontuse.ing, yourmotherhasapreferenceformassagetoolsfrom.ing
- withinboredom 3y agothat's so insult.ing
- Refortified 3y agoIt is, the reasoning along as to buy an .ing domain is laughable at best. it does nothing that a .com isn't already doing
- kmeisthax 3y agoI mean, strictly speaking, this argument could apply to any public suffix. Why not have every site be its own TLD in a single global namespace?
- jeroenhd 3y agoI can't wait for creditcard.ing, pinpas.ing, debitkarte.ing, cartededebit.ing, and all the others to be sent across the world. Might as well pre-emptively add .ing to every phishing list out there.
- hackeredje 3y agoexactly my fist thought :)