Possible BGP hijack: Did Iran just Hijack Telegram ?!
Beginning at 2018-07-30 06:28:25, we detected a possible BGP hijack.
Prefix 91.108.4.0/22, Normally announced by AS62041 Telegram Messenger LLP
Starting at 2018-07-30 06:28:25, a more specific route (91.108.4.0/24) was announced by ASN 58224.
This was detected by 191 BGPMon peers.
Expected |
---|
Start time: 2018-07-30 06:28:25 UTC |
Expected prefix: 91.108.4.0/22 |
Expected ASN: 62041 ![]() |
Event Details |
---|
Detected advertisement: 91.108.4.0/24 |
Detected Origin ASN 58224 ![]() |
Detected AS Path 199981 42739 9002 6453 48159 12880 58224 |
Detected by number of BGPMon peers: 191 |
At 06:28:25 UTC Iran Telecommunication Company AS58224, hijacked several more specific prefixes for Telegram Messenger @telegram
The fact that these more specific prefixes exist in their network indicates these are treated ‘special’. Details at @bgpstream https://t.co/XKDDTkr7lq pic.twitter.com/fjXC9go7rL— BGPmon.net (@bgpmon) 30 juli 2018