How DNSSEC Prevented a Major Crypto Phishing Disaster
-

Despite the severity of the eth.limo hijack, one key security feature helped avoid a large-scale crisis: DNSSEC. Both eth.limo and easyDNS confirmed that Domain Name System Security Extensions blocked the attacker from fully executing their plan.
DNSSEC works by verifying cryptographic signatures on DNS records. In this case, the attacker could not generate valid signatures, meaning most modern resolvers simply rejected the altered records. Instead of being redirected to malicious sites, users encountered errors, effectively stopping the attack in its tracks.
Following the incident, easyDNS has taken responsibility and is upgrading security measures, including migrating eth.limo to a more secure system with no account recovery process. As domain hijacks become more common in crypto, this case shows how critical layered security is in protecting users.