🔒Update on Yield Yak's domain security in relation to recent incidents across DeFi.
TL;DR: we believe the https://t.co/a3yC2HUxm8 site to be secure, and https://t.co/23A9RfEQmX will remain available for users.
More info:
- In the last week, multiple $DeFi platforms have had their sites temporarily hijacked by malicious actor(s)
- The commonality appears to be the domain host provider Square Space, and likely some weaknesses in individual protocol security setup off the back of Google Domain migrations. Some excellent investigating done by @samczsun which can be reviewed here: https://t.co/lTOJmsEj7W
- Yield Yak's domain already follows the recommended security practices outlined (e.g. 2FA enabled and no additional users) and there are no indications that there have been any attempts to attack the Yield Yak site.
- https://t.co/23A9RfEQmX will continue to remain available for any users that prefer to use a domain unassociated with SquareSpace.
- Contributors will be further reviewing the general domain infra in the coming days to determine whether any upgrades should be made to further improve overall security.
🙏Thank you for your patience in the last days as Contributors investigated.