iTnews
  • Home
  • News
  • Technology
  • Security

ICANN apologises for TLD privacy gaffe

By Fahmida Y. Rashid
Jun 18 2012 10:49AM
Follow google news

Applicant details cut from web.

Global domain name regulator ICANN has apologised for inadvertently publishing full contact information of those who applied for a generic top-level (gTLD) domain earlier this week.

ICANN apologises for TLD privacy gaffe

ICANN publicly revealed the list of nearly 2000 proposed top-level domains and the names of the applicants as part of a splashy event on Wednesday in London.

It published the applications on its website, but forgot to redact personal contact data, even though it had promised to do so in the applicant guidebook.

Details such as home addresses for the application's primary and secondary contacts were accidentally exposed.

ICANN voted to expand gTLDs to allow custom domain suffixes and began accepting applications earlier this year.

The current system has 21 gTLDs, including .com, .net, and .org, and country-specific suffixes.

The expanded system would support TLDs using other scripts, such as Cyrillic and Chinese, and generic words, such as .shop and .bank. Applicants paid a $185,000 fee and filled out a comprehensive application as part of the bid process.

"The information in these fields was not intended for publication," ICANN said in a statement, adding, "We apologize for this oversight."

ICANN received 1930 bids from more than 1100 organisations, including big brands such as Google, Canon, and Amazon, but also groups such as the AARP and Better Business Bureau.

The bids came from around the world, although the bulk of the applicants were based in the North America.

After ICANN realized that contact information was available to anyone viewing the public section of its gTLD site, it temporarily disabled that section of the site to remove the information. Access was restored late Thursday.

"The public portions of the new gTLD applications have been restored to the ICANN website," the group said in its statement, announcing that the "unintended information" had been removed.

This is the second privacy misstep for ICANN in its gTLD application process.

The submission system for the new gTLDs went live in March, but was offline for about six weeks due to a software glitch that allowed applicants to view the usernames of other applicants and associated filenames.

"ICANN's review of the technical glitch that resulted in the TLD application system being taken offline indicates that the issue stems from a problem in the way the system handled interrupted deletions of file attachments," ICANN said in a statement at the time.

The downtime forced it to extend the original deadline of April 12 to May 30.

Some industry observers are the new TLDs will generate consumer confusion and increased cyber squatting, by which scammers buy up domains with the intention of selling them for a profit or creating fraudulent sites, such as to engage in phishing.

The current practice of opportunists registering company names and brands in other TLDs will likely continue, said Janet Satterthwaite, a trademark and domain name attorney with US law firm Venable.

Companies will have to continue to do "defensive registrations" to register their brands under each new domain, according to Satterthwaite. For example, a bookstore may need to register their name with .book before a maliciously minded individual gets to it.

ICANN will be processing and approving applications in batches of 500 and expects the process to take as long as nine months to a year.

In cases where there are multiple applicants for the same gTLD, such as the 13 applications for .app, there will be a separate process to determine who wins control of the contested domain.

The first new domains are expected to go live sometime between April and June 2013.

This article originally appeared at scmagazineus.com

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:
gtldicannprivacysecuritytld

Related Articles

  • Apple bumps up security in fresh operating system releases Apple bumps up security in fresh operating system releases
  • Meta accuses NSO Group of violating court order by WhatsApp spear phishing Meta accuses NSO Group of violating court order by WhatsApp spear phishing
  • Researchers build self-replicating AI worm with BYO LLM Researchers build self-replicating AI worm with BYO LLM
  • Anthropic opens Claude Mythos Preview AI program to Australia Anthropic opens Claude Mythos Preview AI program to Australia
Join our WhatsApp Channel

Partner Content

The hidden economics of AI: Why token usage matters more than you think
Partner Content The hidden economics of AI: Why token usage matters more than you think
Scalable AI solutions: secure delivery
Scalable AI solutions: secure delivery
Why resilient communications are becoming critical infrastructure for modern enterprise IT
Promoted Content Why resilient communications are becoming critical infrastructure for modern enterprise IT
You meet the security standard. Shame no one can see it
Promoted Content You meet the security standard. Shame no one can see it

Sponsored Whitepapers

Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
1 in 3 companies lose SaaS data. Here’s how to prevent it
1 in 3 companies lose SaaS data. Here’s how to prevent it

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Anthropic opens Claude Mythos Preview AI program to Australia

Anthropic opens Claude Mythos Preview AI program to Australia

Defence says Palantir is "sandboxed" in its environment

Defence says Palantir is "sandboxed" in its environment

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Microsoft backs down on legal threats against 0day disclosing researchers

Microsoft backs down on legal threats against 0day disclosing researchers

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.