Millions of emails intended for Pentagon employees were inadvertently sent to email accounts in Mali over the last decade

Over the past ten years, a Dutch technologist discovered that millions of emails meant for Pentagon employees were mistakenly sent to Mali due to typos. The similarity between the US military's email address and Mali's domain caused the confusion. Consequently, sensitive information such as hotel reservations for senior US military officials was inadvertently exposed.

The emails were originally intended for individuals with ".MIL" email accounts, which belong to the US military. However, due to typing errors, they ended up being sent to the .ML domain, responsible for managing email accounts in Mali, West Africa.

This email mishap highlights the security risks faced by US national security officials as a result of innocent mistakes. The personal information contained in these emails could potentially be exploited for targeted cyberattacks or to monitor the activities of Pentagon personnel, although there is no evidence to suggest this has occurred in this instance.

The issue was first reported by the Financial Times. Johannes "Joost" Zuurbier, a Dutch internet entrepreneur, received these emails as his company was contracted to oversee the .ML domain. Zuurbier has brought this issue to the attention of various US officials, including the US Embassy in Mali, since 2013.

When asked about the potential security risks and the misdirected emails, Zuurbier expressed ongoing concern. Recently, his contract for managing the .ML domain expired, prompting him to raise awareness of the problem through the media.

It is important to note that none of the leaked emails originated from official Department of Defense email addresses. However, the Department has taken precautionary measures by blocking its email accounts from sending messages to .ml email addresses. Deputy Pentagon Press Secretary Sabrina Singh stated that only emails from personal accounts, such as Gmail or Yahoo, were affected. Singh emphasized that using personal email accounts for official purposes is strongly discouraged.

The Department of Defense acknowledges the issue and treats any unauthorized disclosure of Controlled National Security Information or Controlled Unclassified Information seriously, according to Lt. Cmdr. Tim Gorman's statement to CNN.

While the frequency of misdirected emails has decreased in recent years, Zuurbier still receives hundreds of such emails daily. Many of these emails are spam, but some contain sensitive information.

For instance, one of the misdirected emails included hotel room numbers for Army Chief of Staff, Gen. James McConville, and his team during their visit to Indonesia in May.

tastytrade logo+
Get the best broker for options trading and earn Unusual Whales discounted! in cash with an eligible account deposit at tastytrade. Get an Unusual Whales bonus when you deposit $2000. Offer expires 3/31/25. Certain restrictions, terms and conditions apply.
Unusual Whales does not confirm the information's truthfulness or accuracy of the associated references, data, and cannot verify any of the information. Any content on this site or related pages are not intended to provide legal, tax, investment or insurance advice. Unusual Whales Inc. is not registered as a securities broker-dealer or an investment adviser with the U.S. Securities and Exchange Commission, the Financial Industry Regulatory Authority (“FINRA”) or any state securities regulatory authority. Nothing on Unusual Whales should be construed as an offer to sell, a solicitation of an offer to buy, or a recommendation for any security by Unusual Whales or any third party. Options, investing, trading is risky, and losses are more expected than profits. Please do own research before investing. Please only subscribe after reading our full terms and understanding options and the market, and the inherent risks of trading. It is highly recommended not to trade on this, or any, information from Unusual Whales. Markets are risky, and you will likely lose some or all of your capital. Please check our terms for full details.
Any content on this site or related pages are not intended to provide legal, tax, investment or insurance advice. Unusual Whales Inc. is not registered as a securities broker-dealer or an investment adviser with the U.S. Securities and Exchange Commission, the Financial Industry Regulatory Authority (“FINRA”) or any state securities regulatory authority. Nothing on Unusual Whales should be construed as an offer to sell, a solicitation of an offer to buy, or a recommendation for any security by Unusual Whales or any third party. Certain investment planning tools available on Unusual Whales may provide general investment education based on your input. You are solely responsible for determining whether any investment, investment strategy, security or related transaction is appropriate for you based on your personal investment objectives, financial circumstances and risk tolerance. You should consult your legal or tax professional regarding your specific situation. See terms for more information.