Skip to main content

Postfix SMTP server attack from your IP

  • April 14, 2026
  • 1 reply
  • 25 views

Dear Censys IO Legal & Security Team,

This notice is addressed to your organization following the identification of repeated, unsolicited scanning activities targeting my production SMTP server infrastructure, originating from IP ranges attributable to Censys IO.

While I am aware that Censys operates as an internet intelligence platform, I wish to make the following unambiguously clear:

1. UNAUTHORIZED ACCESS ATTEMPTS
The scanning activities directed at my server constitute unauthorized probing of a private, production-grade system. Under applicable law — including but not limited to the Computer Fraud and Abuse Act (CFAA, 18 U.S.C. § 1030), the EU Directive on Attacks Against Information Systems (2013/40/EU), and French law n°88-19 on computer fraud — such activities may expose your organization to civil and criminal liability, regardless of intent.

2. ABSENCE OF PRIOR CONSENT OR NOTIFICATION
No prior communication, opt-in mechanism, or notification was received from your organization before these activities commenced. This is neither acceptable practice nor consistent with responsible disclosure standards.

3. FORMAL DEMAND
I hereby formally demand that Censys IO:
   • Immediately and permanently cease all scanning, probing, or enumeration of my infrastructure;
   • Remove any data collected from my systems from your databases and indexes;
   • Provide written confirmation of compliance within 5 (five) business days of receipt of this notice.

Failure to comply will compel me to escalate this matter to the relevant data protection authorities (CNIL), file formal complaints with law enforcement, and pursue all available legal remedies — including but not limited to injunctive relief and damages.

I trust this matter will be treated with the urgency it deserves.

Yours faithfully,

Mike Castro Demaria
Supersonique Studio

infos@supersonique.net

FYI :

 

-----

 

Transcript of session follows. Out: 220 mail.cpp-sud-mediterranee-v.fr ESMTP In:  EHLO mail.example.com Out: 250-mail.cpp-sud-mediterranee-v.fr Out: 250-PIPELINING Out: 250-SIZE 10240000 Out: 250-ETRN Out: 250-STARTTLS Out: 250-ENHANCEDSTATUSCODES Out: 250-8BITMIME Out: 250 DSN In:  STARTTLS Out: 454 4.7.0 TLS not available due to local problem In:  ?????? Out: 502 5.5.2 Error: command not recognized In:  ??e R??A??????9?GX?!2VG????? ??1wh?8s?o??????H??H??fM????j??? Out: 502 5.5.2 Error: command not recognized In:  ?? Out: 502 5.5.2 Error: command not recognized In: Out: 500 5.5.2 Error: bad syntax In: Out: 500 5.5.2 Error: bad syntaxSession aborted, reason: lost connection
This topic has been closed for replies.

1 reply

MattK_Censys
Forum|alt.badge.img+2
  • Censys Community Manager
  • April 14, 2026

Hey Mike, Censys only scans to get information. Censys never tries to log into any service, read any database, or otherwise gain authenticated access to any system.

You can opt out of scanning by following the instructions here: https://docs.censys.com/docs/opt-out-of-data-collection