Jump to content

Don't Miss a Beat

Join the UK's most passionate festival community. Keep up with the latest conversations, line-up rumours, and music news.

250,000+ Members

Connect with a massive network of fellow festival-goers.

Lively Discussions

Thousands of active topics on music, campsites, and tips.

Hot Rumours & News

Hear about secret sets and lineup drops before anyone else.

Create Free Account
OR
  • Sign Up!

    Join our friendly community of music lovers and be part of the fun 😎

So, how was the backdoor found?


Guest MoonBuggy

Recommended Posts

I'd be interested to know where it came from. Last year made sense - someone cleverly spotted the typo in the DNS records, realised that 194 made more sense than 192, and that was pretty much that. What I'm wondering is who worked out this year's one, and how - cleverly poking around their network infrastructure? Good guesswork? A leak from See?

Link to comment
Share on other sites

I checked the IP before posting, and it's owned by The Way Ahead Ltd, same group as See Tickets.

The booking screen also successfully loaded my name and address based on registration number and postcode - harder to do if it was a fake site. (Man in the middle attack is theoretically feasible, but would have the same server connectivity challenges as the rest of us)

Link to comment
Share on other sites

.Well traceroutes show that backdoor IP to be hanging off a cable modem but it looks more likely that NTL just never updated their reverse dns and whois information as both traces appear to be going to Guildford.

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Latest Activity

  • Featured Products

  • Hot Topics

  • Latest Tourdates

×
×
  • Create New...