logo

Infoseccers claim Squarespace migration linked to DNS hijackings at Web3 firms

ID: 27977589-978a-53d7-a29e-cea471ffcc5d

STIX ID: report--27977589-978a-53d7-a29e-cea471ffcc5d

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-07-15

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Security researchers report active DNS hijackings after Squarespace's acquisition and migration of Google Domains customers: attackers enumerated and registered pre-linked admin email addresses (which Squarespace did not validate), gained admin control of domains, changed DNS to host phishing sites that steal crypto assets, and in some cases created Google Workspace admin accounts to access email and disable protections. Multiple high-profile web3 firms were affected and hundreds more domains may be at risk; organizations are advised to enable 2FA and review logs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.