<div><div>Hi Farell,<br></div><div><br></div><div>Thank you so much for your work on this comment. It is excellent. I have made some light edits, mainly wordsmithing it so that the comment is consistent with other statements that the NCSG has submitted, but in terms of substance you have performed an excellent analysis of the DNS Abuse in gTLDs  Report. Thanks again!<br></div><div><br></div></div><div class="protonmail_signature_block"><div class="protonmail_signature_block-user"><div>Best wishes, Ayden  <br></div></div><div class="protonmail_signature_block-proton protonmail_signature_block-empty"><br></div></div><div><br></div><blockquote type="cite" class="protonmail_quote"><div>-------- Original Message --------<br></div><div>Subject: Re: Public Comment on the Statistical Analysis of DNS Abuse in gTLDs (SADAG) Report<br></div><div>Local Time: 2 October 2017 6:50 AM<br></div><div>UTC Time: 2 October 2017 05:50<br></div><div>From: farellfolly@GMAIL.COM<br></div><div>To: NCSG-DISCUSS@LISTSERV.SYR.EDU<br></div><div><br></div><div dir="auto"><div>Dear all,<br></div><div dir="auto"><br></div><div dir="auto">From the comments and suggestions we received, the Public Comment we made on the SADAG report has been updated. Please review it before we submit.<br></div><div dir="auto"><br></div><div dir="auto"><div><a href="https://docs.google.com/document/d/10K4cnqMrhRnF1mZFtBbQKpzGNMBcZv2OCjvly_8eYoQ/edit#">https://docs.google.com/document/d/10K4cnqMrhRnF1mZFtBbQKpzGNMBcZv2OCjvly_8eYoQ/edit#</a> <br></div><div data-smartmail="gmail_signature" dir="auto"><div><br></div><div><br></div><div>Regards<br></div><div>@__f_f__<br></div><div><a href="https://www.linkedin.com/in/farellf">https://www.linkedin.com/in/farellf</a><br></div><div>________________________________<br></div><div>Mail sent from my mobile phone. Excuse for brievety.<br></div></div></div></div><div class="gmail_extra"><div><br></div><div class="gmail_quote"><div>Le 21 sept. 2017 23:38, "Nick Shorey" <<a href="mailto:lists@nickshorey.com">lists@nickshorey.com</a>> a écrit :<br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr"><div>Hi everyone,<br></div><div><br></div><div>My apologies that I have yet to have time to provide an in-depth response on this issue - unfortunately tackling issues of DNS abuse in the $dayjob has impeded my spare time today - oh the irony!!<br></div><div><br></div><div>My initial reaction is that we need to consider what we recommend as a result of this study.<br></div><div><br></div><div>It's clear the report has highlighted issues of concern, areas of contention, and elements where some further analysis maybe required. As just one example, when I held discussions with the authors of this study during Johannesburg, I noted there was a gap in analysis of the relationship between WHOIS privacy services and DNS abuse, which may broaden insight.<br></div><div><br></div><div>There also seemed to be a concentration of abuse within the new gTLD space to particular TLDs - further in-depth analysis probably needed to understand the root causes - more engagement with cyber security companies to better understand criminal modus operandi would be useful.<br></div><div><br></div><div>So what questions might we consider regarding next steps? Couple of thoughts:<br></div><div><br></div><div>- Should a further gTLD round (or continuous registration process) be opened until further analysis and reviews have been completed?<br></div><div><br></div><div>- Should ICANN continue to gather and publish such data (i.e. through things like the Domain Abuse Activity Reporting Tools) on this issue, and how should this feed into Compliance processes?<br></div><div><br></div><div>- How can this and future studies inform the policy making process?<br></div><div><br></div><div><br></div><div>Hope this is helpful!<br></div><div><br></div><div>Best,<br></div><div><br></div><div>Nick<br></div></div><div class="gmail_extra"><div><br></div><div><div class="m_-6976344839067804906gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><b>Nick Shorey</b><br></div><div>Phone: <a href="tel:+44%207552%20455988" value="+447552455988">+44 (0) 7552 455 988</a><br></div><div>Email: <a href="mailto:lists@nickshorey.com">lists@nickshorey.com</a><br></div><div>Skype: nick.shorey<br></div><div>Twitter: @nickshorey<br></div><div>LinkedIn: <a href="http://www.linkedin.com/in/nicklinkedin">www.linkedin.com/in/<wbr>nicklinkedin</a><br></div><div>Web: <a href="http://www.nickshorey.com">www.nickshorey.com</a><br></div></div></div></div></div></div><div><br></div><div class="gmail_quote"><div>On Wed, Sep 20, 2017 at 10:20 PM, Enrique Chaparro <span dir="ltr"><<a href="mailto:echaparro@vialibre.org.ar">echaparro@vialibre.org.ar</a>></span> wrote:<br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div>Let me add that the three hypotheses are logical fallacies. Of course,<br></div><div> if your starting point is a logical fallacy you can prove anything you<br></div><div> want, as we clearly see everyday. As always, the old research<br></div><div> guideline stands: “correlation is not causation”.<br></div><div> For instance, a new critical bug in bind (which has a tearful history of<br></div><div> bugs) could cause a surge in DHS hijacking anytime, completely<br></div><div> out of the hypotheses.<br></div><div> <br></div><div> On the other hand, the IP constituency's insistence on measures<br></div><div> that go in the direction of centralising more and more the Internet's<br></div><div> critical sttucture shouldn't be a surpise for anyone.<br></div><div> <br></div><div> Regards from the Far South,<br></div><div> <br></div><div> Enrique<br></div></blockquote></div></div></blockquote></div></div></blockquote><div><br></div>