About emails impersonating Path Network

Martin Hannigan hannigan at gmail.com
Tue Feb 7 01:54:39 UTC 2023

Is widespread impact confirmed?

Unfortunate. Our ASN’s and location contacts in PDB have not received
anything from Path. I looked in search engines (quickly) and see nothing
negative re: your ASN. I found a reference as new to the platform at AMSIX
7/21 for AS 396998. Lack of mail security bits on most platforms are
flagged or quarantined AFAIK. These are typically called “Joe Jobs”.  I’d
save the LEA path for more important things (credibility).

Warm regards,


On Mon, Feb 6, 2023 at 3:39 PM Konrad Zemek <konrad at zemek.io> wrote:

> Hi Nanog,
> It looks like someone with an axe to grind against our company has decided
> to email every AS contact they could find on PeeringDB, impersonating us
> and sometimes spoofing our domains.
> We're aware of the emails and are sorry for the inconvenience. We've since
> added SPF records to the domains we own but don't use (the perps have since
> name-squatted some new ones). We're also actively working with law
> enforcement on the matter.
> Thanks
> Konrad Zemek
> CTO Path Network
> AS396998
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20230206/ea183e01/attachment.html>

More information about the NANOG mailing list