/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Millions of sensitive emails have been missent to Mali's .ML domain due to people mistyping the US military's .MIL domain; .ML control reverts to Mali July 17

Common spelling error has misdirected sensitive Pentagon messages to a company running Mali's internet domain

Financial Times

Context & Ripple Effects

This is another email-security exposure around US defense systems: earlier coverage found that the Army, Navy and DARPA lacked basic STARTTLS email encryption, while a later incident exposed years of military email data in an unprotected Defense Department Azure database.

The .ML routing problem adds a different failure mode: messages can leave intended military channels through a routine addressing error, and the handover of domain control makes responsibility for that recipient namespace newly consequential.

First-order effects

  • Messages addressed to .ML rather than .MIL are delivered outside the intended military domain, putting sensitive correspondence in the hands of the party operating Mali’s country-code domain.
  • Mali’s resumption of .ML control changes who administers the destination for future mistyped mail, requiring the Pentagon to assess exposure and tighten address-validation and handling procedures.

Second-order effects

  • Other government and enterprise mail operators with easily confused domains have reason to review typo-domain monitoring, outbound safeguards and retention practices; this risk does not depend on a breach of their primary systems.
  • The episode reinforces that domain administration can become a security control. It follows prior evidence that a country-code domain could be acquired by a researcher, creating potential misuse risk for a national top-level domain.

Third-order effects

  • If organizations continue to treat domain names as routing conveniences rather than security boundaries, third-party and national domain-governance decisions will remain part of critical communications risk.
  • The broader security posture shifts toward reducing error-tolerant data flows, alongside securing cloud services and identity systems, rather than treating each exposure as an isolated misconfiguration.

The trend: Critical communications security is increasingly shaped by dependencies and human-error paths outside an organization’s own infrastructure, including domain governance and email routing.

Discussion

  • @henryjfoy Henry Foy on x
    Amazing @xtophercook @MehulAtLarge @felschwartz et al story on how millions of sensitive US military emails are landing on Mali's web server operator due to a typo (which the US know about but aren't trying to fix!) https://www.ft.com/... @FinancialTimes
  • @mrkoot Matthijs R. Koot on x
    Typo leaks millions of US military emails to Mali web operator (17 July 2023) https://www.ft.com/... Send confidential info via standard email + mistype .mil as .ml in addressee domain = leak diplomatic docs, tax returns, pw's & top officers' travel details to .ml TLD/DNS op.
  • @lukolejnik Lukasz Olejnik on x
    Sending military emails is plagued with significant complexity. US and Dutch military personnel frequently makes typos, instead of “.mil” or “.nl”, they do “.ml”. Where's your advanced cyberdefence now?! If only we could figure out how to address it ... https://www.ft.com/... [im…
  • @pickardje @pickardje on x
    well this is nuts https://www.ft.com/... [image]
  • @jacob_judah Jacob Judah on x
    SCOOP: Millions of US military emails are being misdirected to Mali because of a typo. US military emails end in .MIL and Mali uses .ML. Today, Russia-aligned Mali regains access to the data as a contract lapses. https://www.ft.com/...
  • @hoanssolo Franz-Stefan Gady on x
    “Despite repeated warnings over a decade, a steady flow of email traffic continues to the .ML domain, the country identifier for Mali, as a result of people mistyping .MIL, the suffix to all US military email addresses.” https://www.ft.com/...
  • @martinsfp @martinsfp on threads
    This is crazy: people missing the ‘i’ out of US military .mil email addresses means sensitive data routinely ends up in sent to Mali (.ml).  Those misdirected emails will be in the hands of the...