คำชี้แจงกรณีการกล่าวถึง Bangmod.Cloud ในบทความด้านความมั่นคงปลอดภัยไซเบอร์
ตามที่ Hunt.io ได้เผยแพร่บทความเกี่ยวกับเหตุการณ์ด้านความมั่นคงปลอดภัยไซเบอร์ และกล่าวถึงบริษัท บางมด เอ็นเตอร์ไพรส์ จำกัด (Bangmod.Cloud) โดยเชื่อมโยงกับหมายเลข IP ที่ปรากฏในรายงาน บริษัทฯ ขอชี้แจงเพื่อให้ผู้ใช้บริการและสาธารณชนมีความเข้าใจที่ถูกต้อง ดังนี้
บทบาทของบริษัทฯ และข้อมูลหมายเลข IP
หมายเลข IP ที่กล่าวถึงมีการประกาศเส้นทาง BGP ผ่านเครือข่าย AS58955 ของบริษัทฯ อย่างไรก็ตาม ข้อมูลผู้ติดต่อใน WHOIS ของหมายเลข IP ดังกล่าวไม่ได้ระบุเป็น Bangmod Enterprise Co., Ltd.
การประกาศเส้นทางผ่านเครือข่ายของผู้ให้บริการ และข้อมูลผู้ติดต่อของหมายเลข IP เป็นข้อมูลคนละส่วนกัน การเชื่อมโยงหมายเลข IP กับ AS58955 เพียงอย่างเดียวจึงไม่เพียงพอที่จะสรุปว่าบริษัทฯ เป็นผู้ดูแลระบบปลายทาง หรือเป็นผู้ดำเนินการ สนับสนุน หรือรับรู้ถึงกิจกรรมที่กล่าวถึงในรายงาน
บริษัทฯ เข้าใจว่าบทความมุ่งนำเสนอผลการวิจัยและข้อมูลโครงสร้างพื้นฐานที่เกี่ยวข้อง มิได้มีเจตนากล่าวหาว่า Bangmod.Cloud เป็นผู้โจมตี อย่างไรก็ตาม การแยกบทบาทของผู้ให้บริการเครือข่าย ผู้ติดต่อตาม WHOIS และผู้ดำเนินกิจกรรมให้ชัดเจน จะช่วยป้องกันความเข้าใจคลาดเคลื่อนของผู้อ่านได้
การรับแจ้งและตอบสนองต่อเหตุการณ์
Bangmod.Cloud มีทีม Security Operations Center (SOC) รับผิดชอบตรวจสอบและตอบสนองต่อรายงานการใช้งานที่ไม่เหมาะสม (Abuse Report) ทุกรายการที่บริษัทฯ ได้รับผ่านช่องทางติดต่อที่เผยแพร่ไว้ตามมาตรฐานสากล
ณ วันที่เผยแพร่คำชี้แจงนี้ บริษัทฯ ไม่เคยได้รับ Abuse Report หรือการแจ้งเตือนล่วงหน้าเกี่ยวกับเหตุการณ์ที่ระบุในบทความ จึงขอให้แยกอย่างชัดเจนระหว่างการแจ้งผู้ติดต่อตาม WHOIS ของหมายเลข IP การแจ้งหน่วยงาน CERT และการแจ้งมายัง Bangmod.Cloud โดยตรง ทั้งนี้ บริษัทฯ ไม่สามารถยืนยันได้ว่านักวิจัยได้แจ้งไปยังผู้ติดต่อตาม WHOIS แล้วหรือไม่
ข้อความในบทความที่ระบุว่าได้แจ้งผู้เกี่ยวข้องแล้ว จึงไม่ควรถูกตีความว่าบริษัทฯ ได้รับแจ้งและละเลยการดำเนินการ
บริษัทฯ พร้อมรับข้อมูลและหลักฐานเพื่อให้ทีม SOC ตรวจสอบส่วนที่เกี่ยวข้องกับเครือข่ายของบริษัทฯ และประสานงานกับผู้รับผิดชอบ โดยขอให้ผู้แจ้งระบุหมายเลข IP วันเวลา และรายละเอียดของความผิดปกติที่ตรวจพบ เพื่อให้สามารถตรวจสอบได้อย่างถูกต้อง
ความร่วมมือกับนักวิจัยด้านความปลอดภัย
บริษัทฯ ขอขอบคุณ Hunt.io และนักวิจัยด้านความมั่นคงปลอดภัยไซเบอร์ที่ช่วยตรวจพบและเผยแพร่ข้อมูลภัยคุกคาม บริษัทฯ เข้าใจและให้ความสำคัญกับงานวิจัยดังกล่าว และยินดีร่วมมือในการตรวจสอบและป้องกันการนำบริการที่ใช้งานผ่านเครือข่าย AS58955 ไปใช้ในทางที่ไม่เหมาะสม
บริษัทฯ ขอความร่วมมือให้การนำเสนอข้อมูลระบุบทบาทของแต่ละฝ่ายและประวัติการแจ้งเหตุไว้อย่างชัดเจน เพื่อให้สาธารณชนได้รับข้อมูลที่ถูกต้องและเป็นธรรมต่อทุกฝ่าย
บริษัท บางมด เอ็นเตอร์ไพรส์ จำกัด
อัปเดตเพิ่มเติม 16 กันยายน 2569
ภายหลังการเผยแพร่คำชี้แจงข้างต้น เมื่อเวลา 11:07 น. ของวันที่ 16 กันยายน 2569 บริษัทฯ ได้รับการแจ้งเตือนจากหน่วยงานด้านความมั่นคงปลอดภัยไซเบอร์ของประเทศไทย เกี่ยวกับหมายเลข IP ที่กล่าวถึงในรายงาน
เมื่อได้รับแจ้ง บริษัทฯ ได้ดำเนินการตามขั้นตอนการปฏิบัติงานมาตรฐานของทีม Security Operations Center (SOC) และได้ให้ความร่วมมือกับหน่วยงานที่ติดต่อเข้ามาเรียบร้อยแล้ว
บริษัทฯ พร้อมให้ความร่วมมือในการตรวจสอบเพิ่มเติมต่อไป
บริษัท บางมด เอ็นเตอร์ไพรส์ จำกัด
===== [ Same statement in English ] =====
Statement Regarding the Mention of Bangmod.Cloud in a Cybersecurity Research Article
Following Hunt.io‘s publication of a cybersecurity research article referencing Bangmod Enterprise Co., Ltd. (Bangmod.Cloud) in connection with an IP address identified in its findings, we would like to provide the following clarification for our customers and the public.
Our Role and the IP Address Information
The IP address referenced in the article is announced via BGP through our network, AS58955. However, the WHOIS contact information for that IP address does not identify Bangmod Enterprise Co., Ltd. as the listed contact.
BGP routing information and IP address contact information are separate records. An IP address’s association with AS58955 alone therefore does not establish that Bangmod administers the system at that address, or that we conducted, supported, or had knowledge of the activities described in the report.
We understand that the article presents research findings and identifies associated infrastructure, and that it is not intended to suggest that Bangmod.Cloud was the attacker. Nevertheless, clearly distinguishing between the network provider, the contact listed in WHOIS, and the party responsible for the reported activity would help prevent misunderstanding.
Abuse Reporting and Incident Response
Bangmod.Cloud maintains a dedicated Security Operations Center (SOC) responsible for investigating and responding to every abuse report we receive through our published contact channels.
As of the publication of this statement, we have not received an abuse report or advance notification concerning the incident described in the article. It is therefore important to distinguish between notifying the contact listed in the WHOIS record for the IP address, notifying a CERT, and notifying Bangmod.Cloud directly. We cannot confirm whether the researchers notified the contact listed in the WHOIS record.
The article’s statement that relevant parties were notified should therefore not be interpreted as indicating that Bangmod.Cloud received a notification and failed to act.
We welcome relevant information and evidence so that our SOC can investigate matters involving our network and coordinate with the responsible parties. Reports should include the IP address, date and time, and details of the detected activity to support an accurate investigation.
Cooperation with the Security Research Community
We thank Hunt.io and the security research community for identifying and sharing information about cyber threats. We recognize the value of this work and welcome cooperation in investigating incidents and preventing the misuse of services carried on our network, AS58955.
We respectfully ask that reporting clearly describe each party’s role and the actual notification history, helping ensure that the public receives accurate information and that all parties are represented fairly.
Bangmod Enterprise Co., Ltd.
Update, 16 September 2026
After the statement above was published, at 11:07 on 16 September 2026 we received a notification from a Thai cybersecurity authority regarding the IP address discussed in the report.
Upon receiving the notification, we followed our standard Security Operations Center (SOC) procedures and cooperated with the authority that contacted us.
We remain available to assist with any further investigation.
Bangmod Enterprise Co., Ltd.


