Researchers spent $20 to acquire an expired domain of an old WHOIS server, which allowed them to gain control over the .mobi top-level domain and potentially undermine the security of the internet. They discovered that many organizations, including certificate authorities, were still using the old WHOIS server, making them vulnerable to attacks. The researchers were able to demonstrate a proof-of-concept attack, highlighting the fragility of the internet's infrastructure. This incident raises concerns about the security and integrity of online communications.