Ars Technica • 8/10/2026

A researcher purchased the domain noreply.net, which led to an influx of sensitive information from various companies. This domain, along with others like deleteduser.com, was acquired by security researchers who established email listening services. These domains are often treated by companies as digital trash cans, resulting in the unintended sharing of corporate secrets. The researchers have reported receiving hundreds of emails containing confidential information from numerous organizations. The phenomenon highlights a significant oversight in corporate email practices. Many companies utilize "no reply" email addresses for automated communications, which are frequently ignored or considered unimportant. However, this practice poses substantial risks, as sensitive data is inadvertently sent to domains that can be easily acquired by individuals with malicious intent or, in this case, researchers exploring security vulnerabilities. The researchers have noted that the volume of sensitive information being sent to these domains is alarming. This situation raises questions about the security protocols in place at various companies and the potential consequences of mishandling email communications. The researchers' findings underscore the need for organizations to reassess their email practices and ensure that sensitive information is not sent to domains that could be compromised. The ongoing receipt of corporate secrets through these domains serves as a cautionary tale for businesses regarding the importance of secure communication channels.
Advertisement
Stories gain Lindy status through source reputation, network consensus, and time survival.














