Cloudflare has now disabled DNSSEC validation on their 1.1.1.1 resolver: https://www.cloudflarestatus.com/incidents/vjrk8c8w37lz
If it turns out the DNSSEC issue was caused by threat actors, this downstream effect could very well have been the reason to do it.
Temporarily is a fairly important word to include with that link
This seems like it should be the bigger news here. Disappointing knee jerk reaction from Cloudflare.
We only disabled SSL on all the websites in one country for a little bit.. I'm sure those credit card numbers were perfectly safe over the wire
Welp. I think can call it on DNSSEC now.