Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mastodon.online/@standev" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>standev</span></a></span> <span class="h-card" translate="no"><a href="https://sfba.social/@mvilain" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>mvilain</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@jerry" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>jerry</span></a></span> That's propably because of that.</p><ul><li>I know companies that'll instantly block any domain registered or adminitrated or linked to <a href="https://infosec.space/tags/GoDaddy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GoDaddy</span></a>, <a href="https://infosec.space/tags/NameCheap" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NameCheap</span></a>, <a href="https://infosec.space/tags/NiceNIc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NiceNIc</span></a>, <a href="https://infosec.space/tags/CloudFlare" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CloudFlare</span></a> or <a href="https://infosec.space/tags/ProtonMail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProtonMail</span></a> due to rampant <a href="https://infosec.space/tags/spam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>spam</span></a>, <a href="https://infosec.space/tags/scams" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>scams</span></a> and abuse by <a href="https://infosec.space/tags/CyberCrime" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberCrime</span></a> groups. </li></ul><p>In fact I did that - alongside <a href="https://infosec.space/tags/Geoblocking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Geoblocking</span></a> - to prevent and deter <a href="https://infosec.space/tags/carding" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>carding</span></a> attempts at a fmr. employer.</p><ul><li>And like many modern sites, attempts of registering an account would just get <a href="https://infosec.space/tags/blackholed" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>blackholed</span></a> without any notification and said IPs [the entire block allocation as per WHOIS!] temporarily blocklisted for 24 hours.</li></ul><p>Granted this wasn't my decision but basically what the CLO & CFO saw fit as "cybersecurity and risk avoidance strategy" towards regulatory pressure by <span class="h-card" translate="no"><a href="https://social.bund.de/@bsi" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>bsi</span></a></span> & <span class="h-card" translate="no"><a href="https://social.bund.de/@BaFin" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>BaFin</span></a></span> ...</p>