← All stories
● Covered by 1 source · 1 reportLow impact1 neutral

Researcher logs phone calls to military bases via e164.arpa DNS hijacking

🔄 Updated 1h ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Researcher hijacked e164.arpa domains for phone network infrastructure.
  • Logged hundreds of thousands of calls to military bases.
  • e164.arpa is an outdated system for routing calls over the internet.
  • The system is largely defunct but still has active zones.

DNS Hijacking of Phone Infrastructure

A researcher successfully hijacked e164.arpa domains, which are part of the infrastructure for phone networks. This allowed them to intercept and log data related to phone calls, including those directed to military bases. The researcher previously reported similar takeovers of .gov and .edu domains.

Understanding e164.arpa

e164.arpa, also known as ENUM, was conceived in the early 2000s as a method to route phone calls over the internet using DNS. It translates phone numbers into domain names (e.g., +49 30 123456 becomes 6.5.4.3.2.1.0.3.9.4.e164.arpa). The intention was for carriers to use these domains to find SIP/VoIP addresses, bypassing traditional, more expensive phone networks.

System Deterioration and Vulnerability

The ENUM system never gained widespread adoption and has largely deteriorated over the years, with minimal current use. Despite its obsolescence, some countries, like Germany, still technically allow the registration of e164.arpa domains. The researcher noted that while RFCs specify only NAPTR records for call routing, nothing prevents hosting websites or other services on these domains, creating a potential for misuse.

Impact and Implications

The successful hijacking and logging of calls, including those to military bases, demonstrates a vulnerability in this neglected part of the internet's infrastructure. Although the system is largely defunct, its continued existence and the ability to register and control these domains present a security risk, as they can be exploited for data interception or other malicious activities.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~21 min · 18 stories · Aug 21

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

A researcher demonstrated how DNS hijacking of e164.arpa domains, intended for phone network infrastructure, allowed them to log hundreds of thousands of phone calls to military bases. This highlights a vulnerability in an outdated but still active part of the internet's phone routing system.