Mesh Security incident

[EU/US] Outbound IP RBL Listing

Notice Resolved View vendor source →

Mesh Security experienced a notice incident on August 27, 2025 affecting Outbound Email Security and Outbound Email Security, lasting 19h 13m. The incident has been resolved; the full update timeline is below.

Started
Aug 27, 2025, 01:40 PM UTC
Resolved
Aug 28, 2025, 08:54 AM UTC
Duration
19h 13m
Detected by Pingoru
Aug 27, 2025, 01:40 PM UTC

Affected components

Outbound Email SecurityOutbound Email Security

Update timeline

  1. identified Aug 27, 2025, 01:40 PM UTC

    We are aware that one of our outbound IP addresses was listed on Spamhaus' RBL. This IP has been removed from our sending relays and the team is actively working with Spamhaus to identify a root cause. At this time, we do not anticipate any ongoing impact to email delivery and we are closely monitoring for further reports. No action is required from end customers or partners.

  2. resolved Aug 28, 2025, 08:54 AM UTC

    Our team has received further feedback from Spamhaus earlier this morning. The listings were caused by an end user emailing a spamtrap/honeypot operated by Spamhaus. The honeypot domain is a typosquat of a well known brand and the emails sent were not malicious traffic. We have reached out to the MSP so they can advise their end user of the mistake/typo.