I accidentally logged hundreds of thousands of phone calls to military bases
- Security
- Infrastructure
- Telecom
- Networking
The post walks through how the author bought a neglected domain tied to ENUM, an old standard that maps phone numbers into DNS so voice systems can route calls over the internet, and then started receiving live lookup traffic that should never have reached a public domain they controlled. The surprising part was not just that ENUM still existed, but that the queries exposed called numbers and timing data for destinations including Diego Garcia and Ascension Island, places strongly associated with UK and US military activity. The writeup lands as a supply-chain failure in telecom plumbing, not a clever app bug. A forgotten namespace was still wired into real call-routing paths.
If your systems depend on obscure DNS or telecom routing layers, audit who controls every domain and namespace they touch. “Unused” infrastructure can still be live enough to leak operational data, especially when private telco plumbing spills onto the public internet.
-
lina.sh
- Discuss on HN