The New York Times reported on Tuesday that The Federal Reserve Bank of St. Louis, which uses Enom as its domain name registrar, suffered a DNS attack:
“In a statement issued late Monday, the St. Louis Fed informed those who use the bank’s public economic data and analysis tools that in late April it discovered the breach. The bank said hackers compromised the domain name registrar, which sends traffic to the St. Louis Fed, and was able to redirect the bank’s web traffic to rogue sites.”
Later on, Enom sent out this email to its customers:
Copyright © 2025 DomainGang.com · All Rights Reserved.I want to inform you that Enom recently became the subject of what appears to be a very sophisticated attack by a group that targets large internet infrastructure companies. Within hours of this attack, we were in contact with federal law enforcement and the affected parties. This attack hijacked the DNS traffic of 4 domains for a very short period of time before we mitigated the situation.
You have not been impacted by this incident and you are not required to take any action to ensure your future security. However, in an effort to continue to strive for transparency and best in class services, I wanted to inform you of this unfortunate situation.
To be clear, no domain names were stolen, and after exhaustive analysis, with the exception of the DNS of the domains specifically targeted, we do not have any evidence or reason to believe that these malicious actors accessed any customer accounts, customer personal information, or any of Enom’s secured and encrypted data. Your security is a leading priority at Enom and we continue to work both with federal law enforcement and industry leading security forensic companies to protect your online presence.
I know you trust Enom with your domain names and services and we take this responsibility very seriously. We appreciate your business and you have our commitment to continue to do what it takes to protect your assets.
Sincerely,
Taryn Naidu CEO, Enom