From Joke Domain to Geopolitical Tool: The SondeHub Story
AI News

From Joke Domain to Geopolitical Tool: The SondeHub Story

4 min
8/19/2026
SondeHubRadiosonde TrackingGeopoliticsDrone Warfare

TL;DR

What began as a joke domain redirect in 2018 has evolved into SondeHub, a critical open-source infrastructure for tracking radiosondes (weather balloon transmitters). Now, it inadvertently maps military installations, supports drone operations in Ukraine, and has become a target for DDoS attacks and government requests. This story exposes the unexpected intersection of hobbyist citizen science and modern geopolitical conflict.

The Accidental Birth of SondeHub

In 2017, an Australian radio enthusiast was introduced to weather balloon hunting. The community was small, tracking only a few radiosondes on Habhub, a site designed for amateur high-altitude balloons. By May 2018, the joke domain sondehub.org was registered—simply redirecting to Habhub with a filter to show weather balloons. It was never meant to be a service, just a fun URL.

However, as the community grew, Habhub's servers began to struggle. By July 2018, the team started proxying data through SondeHub to capture more information and play with AWS analytics tools. By 2019, they realized they needed to build their own backend to handle the load, leading to the development of new APIs and a predictor system.

Accidental Military Mapping

One of SondeHub's key innovations was reverse prediction—using wind data to calculate where a balloon was launched. This worked so well that it began mapping previously undocumented launch sites, including military installations. The team received a request from a military entity asking them to remove a site from their maps.

Wind data, it turns out, is also used for artillery ranging. What started as a hobbyist tool was now inadvertently mapping out artillery sites and military vessels at sea. The team agreed to delete launch sites on genuine requests but continued the practice, walking a fine ethical line.

continue reading below...

The 'China Spy Balloon' Incident and Its Aftermath

In February 2023, the infamous 'China spy balloon' incident brought SondeHub into the spotlight. After a US military shootdown, the site was linked by the Washington Post, causing traffic spikes. The team managed the load but soon faced a new problem: DDoS attacks.

In December 2024, they noticed a single IP hammering their prediction API. Initial suspicions of a scraper were confirmed when they plotted the request origins—they were concentrated near the Ukraine/Russia border. The team realized Ukrainian deep-strike teams were likely using SondeHub's open data to plan drone operations, and Russia was trying to shut it down.

Ethical Dilemmas and Support Requests

The team faced a moral quandary: they were inadvertently supporting a war effort. They quickly released a Docker container for local prediction to reduce load and contacted AWS to ensure the attacking account wasn't shut down, fearing loss of life if the service was cut off. They even sent messages to Ukrainian military chats, offering help and pleading for them to use the local version.

Throughout 2025, they received numerous requests from the US Office of the Secretary of War, the NTSB, and the FAA. When the US military requested data, the team invoiced them, but the invoice was never paid. They also assisted the NTSB after a possible plane-balloon collision, providing data that led to Windborne confirming the incident.

Weird Encounters and the Human Side

Not all interactions were military. The team dealt with a hit-and-run involving a balloon enthusiast, a request from a 'Cheese Fortune Teller' journalist, and a bizarre email from a Swiss company denying a sample due to 'strategic reasons' and ranting about chemtrails. They also tracked GPS jamming and spoofing patterns, noting strange circular tracks that suggested deliberate interference.

Why This Matters

SondeHub's story is a powerful example of how open data and citizen science can have unintended geopolitical consequences. What started as a joke is now a critical infrastructure piece in modern warfare, highlighting the blurring lines between civilian tools and military operations. It also raises serious questions about the ethics of providing open data that can be used for both humanitarian and lethal purposes.

As the team notes, "Fuck Russia" for forcing them into this position, but they continue to run the service, balancing transparency with the need to protect lives. This is a story about the internet's power to democratize information—and the unforeseen responsibilities that come with it.