MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Font ResizerAa
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Reading: Hackers posed as the eth.limo team to take over its domain, post-mortem reveals
Share
Font ResizerAa
MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Search
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Have an existing account? Sign In
Follow US
© Market Alert News. All Rights Reserved.
  • bitcoinBitcoin(BTC)$74,783.00-0.65%
  • ethereumEthereum(ETH)$2,286.32-1.59%
  • tetherTether(USDT)$1.00-0.02%
  • rippleXRP(XRP)$1.41-1.05%
  • binancecoinBNB(BNB)$623.830.31%
  • usd-coinUSDC(USDC)$1.00-0.01%
  • solanaSolana(SOL)$84.55-0.72%
  • tronTRON(TRX)$0.3314540.58%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.040.00%
  • dogecoinDogecoin(DOGE)$0.094288-0.26%
Crypto NewsEthereum

Hackers posed as the eth.limo team to take over its domain, post-mortem reveals

rahulbadiyafad150c105
Last updated: April 20, 2026 11:03 am
rahulbadiyafad150c105
Published: 3 hours ago
Share

The Ethereum Name Service gateway eth.limo said its domain hijack on Friday stemmed from a social engineering attack targeting its DNS provider, EasyDNS.

In a post-mortem released Saturday, eth.limo explained that an attacker impersonated a team member to trigger an account recovery request with EasyDNS, gaining access to the account and modifying domain settings.

“The NS records were changed and directed to Cloudflare… Once we realized a DNS hijack had occurred, we immediately alerted the community as well as Vitalik Buterin and others, and began working with EasyDNS to respond,” the team said.

Eth.limo functions as a Web2 bridge, enabling access to roughly 2 million decentralized websites using .eth domains. A compromise of the service could allow attackers to redirect users to malicious destinations. Buterin had earlier warned users to avoid his blog until the issue was resolved.

Mark Jeftovic, CEO of EasyDNS, accepted responsibility in a separate report, stating: “We screwed up and we own it.”

“This would mark the first successful social engineering attack against an easyDNS client in our 28-year history. There have been countless attempts.”  

Both companies said that Domain Name System Security Extensions played a key role in limiting the impact of the attack.

Because the attacker couldn’t generate valid cryptographic signatures, DNS resolvers rejected the forged records, meaning users encountered error messages instead of being redirected to malicious sites.

“DNSSEC was enabled on the domain when the attackers tried to switch the nameservers, likely to carry out phishing or malware injection,” said Mark Jeftovic. “DNSSEC-aware resolvers — which most are today — began dropping those queries.”

In its post-mortem, eth.limo said the attacker didn’t have access to the domain’s signing keys, preventing them from bypassing DNSSEC protections and likely “reducing the blast radius of the hijack.” The team added that it is not aware of any user impact so far but will provide updates if that changes.

Meanwhile, EasyDNS has begun implementing changes following the incident. CEO Mark Jeftovic described the social engineering attack as “highly sophisticated” and said the company is continuing its internal review to determine exactly how the breach occurred while rolling out measures to prevent a recurrence.

Mark Jeftovic said eth.limo will be migrated to Domainsure, a platform designed for high-security use cases. He noted that Domainsure does not support account recovery mechanisms, reducing the risk of similar social engineering attacks.

“On behalf of everyone here, I apologize to the eth.limo team and the wider Ethereum Name Service community,” Jeftovic added, highlighting EasyDNS’s long-standing involvement with ENS since 2017.

The eth.limo breach is the latest in a string of domain hijacks targeting crypto projects. Just days earlier, CoW Swap lost control of its website after an unknown attacker took over its domain.

Similarly, Steakhouse Financial revealed in late March that it had also lost control of its domain to an attacker.

Share this:

  • Share on X (Opens in new window) X
  • Share on Facebook (Opens in new window) Facebook

Like this:

Like Loading...

Related

Analyst Predicts Bitcoin Price Crash: Rejection From $120K Puts Altcoins At Risk
WF Holding Soars 80% After Crypto Pivot And China Expansion Plans – WF Holding (NASDAQ:WFF)
From Finance to Gaming: How Cryptocurrency Is Changing Global Industries
Stablecoin Inflows Jump From $51B to $102B — Is Smart Money Preparing to Buy the Dip?
Cosmos (ATOM) Price Drops 3.5% as Technical Indicators Signal Mixed Outlook
TAGGED:AltcoinBlockchainBusinesscryptocurrenciesEthereumIndustryInternetTechnologyVitalik Buterin

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Previous Article Bitcoin wipes out its weekend rally as mounting pressure on the US–Iran ceasefire rattles markets
Next Article Polymarket is reportedly in talks to raise $400M at a $15B valuation
© Market Alert News. All Rights Reserved.
 

Loading Comments...
 

    Welcome Back!

    Sign in to your account

    Username or Email Address
    Password

    Prove your humanity


    Lost your password?

    %d