Hacker Newsnew | past | comments | ask | show | jobs | submit | ihon's commentslogin

When i was younger i believed the tank crushed the man who was blocking the tank. Many years later i saw the complete video. The man walked away, persuaded by bystanders. Did a google search and found this: Tank Man full footage: https://twitter.com/CarlZha/status/1134582926325104641


My understanding is that the men who dragged him away were plainclothes police officers. To my knowledge, nobody has ever shown any evidence he was seen alive after the incident.


That twitter thread had a link to a video where you can see the actual shootings (NSFW, blood gore): https://www.youtube.com/watch?v=hA4iKSeijZI


I recently registered a domain name and set wild card email forwards to my yahoo address. I suddenly start receiving emails with confidential attachments (like employee/vendor payment settlements, disbursements, hr communications, etc.). These emails are from a very large company. I recognized we had phonetically similar sounding domain names. Only one letter was different. Whenever somebody misspelt the domain name in the email, i got that email.


This is known as typo-squatting and is not always done accidentally.

An interesting related technique is known as bit-squatting where you register domain names of a target company 1 bit different from the original.

It can be used for receiving emails, phishing sites, capturing internal DNS requests that have gone rogue due to bit errors (due to anything from hardware errors to cosmic rays).

There is a really good talk by Artem Dinaburg from Blackhat about it (first talk about it? I think) https://media.blackhat.com/bh-us-11/Dinaburg/BH_US_11_Dinabu...


I had a look through the paper, that's very interesting!

The talk is available here https://www.youtube.com/watch?v=9WcHsT97suU


Yeah I get similar mails - my email address is the same as that of an insurance company, but with two letters switched. I only get one every week or so, I just reply and say 'you probably meant to send this to [correct email address]'. Although some people just don't understand and start sending me replies, arguing how I'm wrong... I just ignore those from that point on.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: