GoDaddy Shuts Down 15,000 Subdomains Used for Online Scams, Resets Account Passwords

Millions of users could have been affected by these scams.

Advertisement
By Harpreet Singh | Updated: 29 April 2019 13:20 IST
Highlights
  • A security researcher found 15,000 subdomains were being misused
  • GoDaddy's abuse team has removed all the subdomains
  • Domain name owners weren't aware of these scams

Scammers setup fake celebrity endorsements on hijacked subdomains

Spammers continue to find new ways to lure unsuspecting users on the Web into clicking malicious links or buying illegitimate products. In a recent crackdown, GoDaddy has shut down over 15,000 subdomains linked to spammers. These subdomains were being used to sell fake products. What's interesting here is that the rightful owners of the domain names weren't even aware this was happening.

Jeff White, a security researcher at Palo Alto Networks, spent two years investigating these spammers. The operation involved sending spam emails in bulk and getting users to click on these subdomains that sold fake products.

Advertisement

A subdomain includes a prefix to an Internet domain name which can be directed to an IP address. GoDaddy customers can create up to 100 subdomains per domain name. In his white paper, White explained that the scammers could have tricked millions of users. The report was first spotted by ZDNet.

Since users landed on websites that appeared to be subdomains of legitimate domains, they were conned into believing they were buying a genuine product. All these subdomains featured landing pages with fake celebrity endorsements. The spammers were trying to sell supplements, diet pills, and other fake products.

Advertisement

The websites hosted on these subdomains carried fake endorsements from celebrities such as Stephen Hawking, Jennifer Lopez, Gwen Stefani, and even the Shark Tank TV show. The websites also linked to several affiliate networks to generate revenue.

White's investigation took around two years. After collecting all the information on the scammers, White reported his findings to GoDaddy's abuse team which was quick to take action by taking down all the malicious subdomains.

Advertisement

GoDaddy's customers weren't aware that their domains were being misused to create such fake websites. The scammers probably gained access to such accounts via phishing or credential stuffing methods. GoDaddy has reset passwords for all affected accounts.

In case you come across an email that makes insane promises, or you land on a webpage filled with celebrity-endorsed products, it's always sensible to search the Web for more details rather than falling for a scam.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Moto G37 Power, Moto G37 India Launch Date, Key Features Confirmed
  2. Oppo Find X9s Price in India, Features Leaked as Launch Draws Close
  3. Motorola Edge 70 Pro Review: Sleek, Light, and Bright!
  4. Anthropic Brings Back OpenClaw Agent's Access to Claude Subscribers
  5. Google Said to Be Working on New Gemini Spark AI Agent Ahead of Google I/O
  6. GSMA Database Listings Suggest Vivo V80, Vivo S2 Could Launch in China Soon
  1. Samsung Galaxy M47 With Snapdragon 6 Gen 3 Chipset Reportedly Listed on Geekbench
  2. Vivo V80, Vivo S2 Reportedly Visit GSMA Database, Hinting at Imminent Launch in China
  3. Redmi K100 Series May Launch in Q3 2026, Ahead of Anticipated Xiaomi 18 Series Debut
  4. Kraken Follows Kelp DAO, Switches From LayerZero to Chainlink CCIP
  5. Anthropic Reverses Decision on Third-Party Agentic Tools, Allows OpenClaw Usage in Claude Plans
  6. East of Eden OTT Release Date: Know When and Where to Watch This Upcoming Series?
  7. Arc Raiders Surpasses 16 Million Copies Sold as Embark Studios Announces Next Major Update
  8. Oppo Find X9s Price in India, Detailed Specifications Leaked as Launch Draws Close
  9. Google Said to Be Working on New AI Agent Called Gemini Spark That Could Launch at Google I/O 2026
  10. Thimmarajupalli TV Now Streaming Online: Where to Watch the Telugu Rural Drama Online?
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.