Observed arrival · 2026-09-14
BGP.Exchange’s Public Security Incident Statement
A live incident report tracking a domain hijacking, infrastructure rebuild, investigation, and potential member-data exposure.
Field notes
The statement is organized as an operational timeline: infrastructure recovery, domain control, investigation scope, member information, and password handling. At 2:00 AM AEST, the replacement Sydney hypervisor had been installed and was undergoing updates, patching, and hardening before workloads could return. The operator names the application, database, email, and former Sydney hypervisor as affected systems while reporting no evidence of access to route servers or other global points of presence.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue