During the past several weeks, there have been quite a few articles that broach the topic of domain theft. From email hacking to phishing to security breaches, there are many ways a domain name can be stolen from its rightful owner. The security of my domain names is the top priority for me when choosing a domain registrar.
With domain names being an intangible asset that I cannot physically protect, I rely heavily on the domain registrars I choose to help me protect my domain names. I have a responsibility to ensure my password is strong and added security like two factor authentication is enabled when possible, but there are other aspects to domain name security beyond what I can control. The domain registrar is responsible for ensuring that their database and technology is secure and does not allow for unauthorized access. They need to be sure their systems work properly, and they need to be proactive against threats.
On Labor Day, I wrote an article covering Namecheap’s “urgent security warning.” In its blog post, the company reported that it had “determined that the username and password data gathered from third party sites, likely the data identified by The Register (i.e. not Namecheap) is being used to try and gain access to Namecheap.com accounts.” At the time, I was thankful that I have 2 factor authentication enabled on my registrar accounts where I have my valuable domain names.
Recently, I received