Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo BLUEYONDER.COM

Group: clop

Discovered by ransomware.live: 2025-01-24

Estimated attack date: 2025-01-24

Description:

[AI generated] BlueYonder.com, now part of Panasonic, is a pioneering platform in digital supply chain management and advanced retail planning. The company utilizes artificial intelligence (AI) and machine learning to automate business processes, enhance decision-making, and drive more profitable and efficient operations. Its solutions include demand planning, price optimization, logistics management, and more.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 44

Third Party Employee Credentials: 24


External Attack Surface: 8



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • mxb-001c4601.gslb.pphosted.com.
  • mxa-001c4601.gslb.pphosted.com.
TXT Records
  • docker-verification=63d750f5-22c3-44ce-b38f-c73f8ff81b8b
  • atlassian-domain-verification=fFaEfVw5MJAVoLNA3H29JaDN1rctp84mNG7aZlkSm/M1e0DJYP5foTEMONOH4svq
  • facebook-domain-verification=lzq5df8n4kf5z7atfztgh4nz03p7mm
  • docusign=3687e497-8aac-46c8-9585-74617c41d1ef
  • google-site-verification=NnKIrN6l34cLaTy-zHL4sUapy0je7c7MRFHMoRWSCJQ
  • 96f5k3pq3kkp3qb0pgz59s2kqgftpr6m
  • 45f61csvq7dm7krqd2f6rxr975rnxrn6
  • 9py0gp017cy84cvjbzkk6md3c9fzqfz2
  • canva-site-verification=CH6xCc5KGVEbEGLLpN8uQw
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com -all
  • khxhb28q47b9ghykc0vrc3ycnfdxbm7h
  • jsg7y3x2x6m1tmp03st7gfx59z6h33k0
  • hjvp8yz04skkrckptpkgk3v422ns398m
  • drift-domain-verification=d4fc17e9b37e74b1d04c4c0b2b9aa605016c55d8c069fa9816c8939c64e8f85c
  • apple-domain-verification=zawXRNwWD2x3faTO
  • m7s8j66r23lxjj9h8cddmcmn5g4zkspy
  • MS=ms13410065
  • smartsheet-site-validation=Qqmgaabe1B350Wex55FPrkqv_3CypGMP
  • adobe-idp-site-verification=a8d8878cffae8fb9bac79b69a783d4a45216c181f43e9ba21f888a2c79404818
  • mm0mkc7893xnwb0tnr4w0mcl765lwmys
  • _py21y41ahl3i3wrqznyji0qsxe62ub1
  • r5v4svskmnvfyt2b27bt7w09n6y697vb
  • docusign=bf3432d2-409f-4e3d-b067-d3fb98b560d3
  • _cgh2rycmjg983clurg7wjtfsv3uqy4s
  • n64f09090jtgry6dwh53n3hv7kx3fm32
  • xmcxcb0b9k4b4tj1lhd72ftwlcvsn3nl
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot