Skip to content
We are glad to be a part of your success.
facebook
twitter
instagram
linkedin
ATEL Trading & Exchange
Call Support +234 818 8888 403
Email Support info@atelexchange.com
Location Rehoboth Plaza, Egbeda
  • Home
  • About Us
    • Career
    • Videos
  • Products and Services
    • CCTV Installation
    • ALTECHO School
    • ALTECHO Farm
  • Trading Currencies
    • Buy
    • Sell
  • Blog
  • Login/Register
  • Contact Us

How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

Home > Blog > How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

Posted on April 27, 2018 by eromosele
0

DNS attacks can manifest themselves in many ways, all targeted against the Domain Name System that connects the internet. At best they’re an inconvenience, knocking websites offline or preventing access, and at worst they’re costly, as this week’s $150,000 Myetherwallet hijack demonstrated. When you’re interacting in the crypto space, here are a few ways to protect yourself against DNS attacks.

How DNS Attacks Work

In the aftermath of Tuesday’s DNS attack, which affected a string of major websites and proved particularly costly to some Myetherwallet users, Cloudflare published a report. “BGP leaks and cryptocurrencies” examines how the attack went down, and how the attackers were able to exploit vulnerabilities in the DNS system. BGP is the Border Gateway Protocol, a standardized gateway for routing information from one part of the internet to another.

How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

With over 700,000 possible routes, there’s a lot of ways to get from A to B or Z or any letter in between. Most of the time, all of these chains, operated by different internet providers, communicate just fine, but occasionally things go wrong. Usually these leaks are localized and are the result of a configuration mistake. But as Cloudflare explains, “Sometimes [a BGP leak] is done with a malicious intent. The prefix can be re-routed through in order to passively analyze the data”. It continues:

During the two hours leak the servers on the IP range only responded to queries for myetherwallet.com. As some people noticed SERVFAIL. Any DNS resolver that was asked for names handled by Route53 would ask the authoritative servers that had been taken over via the BGP leak. This poisoned DNS resolvers whose routers had accepted the route.

Anyone connecting to a DNS resolver that had been poisoned during the attack would have been rerouted to a fraudulent Russian provider instead.

How to Detect DNS Attacks

The good news is that in most cases identifying the signs of BGP hijacking doesn’t call for a Master’s in internet protocol architecture. The first clue that something is amiss can be found by glancing at the https lock in your browser. It should be green, to denote that the certificate for the website you’re accessing is trusted. If it’s red or you’re presented with a warning message, don’t proceed just because the URL you’re loading is correct.

How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

One of the victims of Tuesday’s Myetherwallet attack was shown a warning that their connection to the site was not secure but confessed: “Even though every part of my body told me not to try and log in, I did.” Due to notification fatigue, it’s easy to dismiss warning messages without paying them attention, but not all notifications are spammy: some are vital, and should be overridden at your peril.

Cloudflare explains: “If you were using HTTPS, the fake website would display a TLS certificate signed by an unknown authority (the domain listed in the certificate was correct but it was self-signed). The only way for this attack to work would be to continue and accept the wrong certificate. From that point on, everything you send would be encrypted but the attacker had the keys.”

Stay Vigilant and Control your Crypto

Sites such as Whoismydns.com enable web users to check whether they recognize the name and IP of the server they’re connecting to, which will often be your ISP. Beyond that, unfortunately, there is little that the average web user can do, for the onus is on web admins to monitor their site for evidence of BGP leaks. Given the risks of storing cryptocurrency on centralized exchanges, and of interacting with websites such as Myetherwallet and decentralized exchanges like Etherdelta, both of which have fallen victim to DNS attacks, investors are left with few options. Crypto projects such as REMME are working on technology that will alert users to DNS attacks on cryptocurrency exchanges, but its implementation is still some way off.

How to Protect Yourself Against DNS Attacks When Using Cryptocurrency

The only way to ensure your crypto remains your crypto is to store it in a secure hardware wallet that is not connected to the internet. But to acquire those coins in the first place, you have to connect to the internet. For practical reasons, it is essential that you are able to go about your daily business without constant fear of having your web traffic hijacked, poisoned, or spoofed. But when accessing online wallets and exchanges, be sure to check that the https lock is in place. If your gut is telling you something is wrong, trust your instincts and heed the warning signs. It might just save your crypto.

Do you think DNS attacks are on the rise? 

Let us know what you think in the comment box below.

At Altecho Trading and Exchange Limited- ATEL, we give you news, opinions, advice and research on Crypto-currency (eCurrency, digital currency), computer/general security issues and the latest internet threats.

Credit: Kai Sedgwick + Atel

Share on Facebook Share
Share on TwitterTweet
Share on Pinterest Share
Share on LinkedIn Share
Share on Digg Share

Leave your comment with us on Facebook
We'd appreciate.

Tags: bitcoin, blogger.com, cnn, CrypoBillionaires, dns, ether, ethereumcashpro, exchange, foodnetwork, invest, Investment, moneyline, music, networth, news bitcoin, punchnewspaper, ripples, russia, services.com, socialmedia, sunnewspaper

Cryptocurrency Videos

ATEL-looking for the best deals?

Looking For the Best Deals?

ATEL-looking for the best deals?

RSS Currency News – Nigeria

  • Nigeria takes $9 billion hit in derivatives to clean up reserves
    … currency liabilities and rebuild investor confidence in the naira, … capital controls, allowing the naira to float freely, … country’s severe forex shortage. Nigeria’s forex reform efforts raise … Goldman Sachs involving foreign-currency-backed deals to support …
  • Naira Suffers Sharpest Decline Against Dollar in Official Market
    The Nigerian naira on Friday recorded … FX market, even as monetary authorities continue efforts to stabilize the currency … warn that currency instability could further complicate Nigeria’s economic … supply imbalances in the FX market. Financial analysts are …
  • Naira Weakens in Official Market, Closes at N1,602/$1
    … (NFEM) shows that the currency traded within a range of … Throughout the week, the naira had shown relative stability, … rebound, during which the naira recorded its first significant … , stressing the instability in Nigeria’s foreign exchange market. …

Bill Gate speaks about Crypto currency ( TBC)

Follow Us On Facebook

This message is only visible to admins.

Problem displaying Facebook posts.
Click to show error

Error: (#200) Provide valid app ID
Type: OAuthException

Altecho’s Bragging Right

Altecho Trading & Exchange Limited (ATEL) can arguably boast as one of the fastest paying e-currency trading and betting company in Nigeria. Click here to trade cryptocurrency or visit our office. FREE Wifi available, get paid instantly and we make faster exchange, anytime anywhere... That's why we are the best!
Quick Contact
Rehoboth Plaza, 3rd Avenue, Opposite A Close, Gowon Estate Ipaja, Lagos, Nigeria
+234 818 8888 403
info(a)atelexchange.com

Follow Us

ATEL on Instagram

post
follow

Follow us on Twitter

Tweets by @atelexchange
Copyright © 2018 All Rights Reserved. | WordPress Theme: Enlighten by Accesspress Themes

ALTECHO TRADING & EXCHANGE LIMITED (ATEL) PROVIDES THE SERVICE OF BUYING AND SELLING OF E-CURRENCIES ONLY, AS SUCH, ALL CURRENCY TRANSACTIONS ARE ONLY TRANSACTED ONLINE.

1. We do not sell recharge card printing, visa, lotteries or give a job offer in anyway.
2. If any person direct you to pay into any of our account for such services, kindly disregard OR verify by telephone on: +23481 8888 403, chat with our online live support OR send a confirmation email to: support@atelexchange.com
3. For payment into any of our bank accounts that is above Fifty thousand Naira [NGN50,000.00], please call first, telephone: +23481 8888 403 to verify the needful.
4. ATEL shall not be liable of or responsible for any loss or damage arising from any ignorance as mentioned above OR negligence of Terms of Use.

Terms of Use.