Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Bolttech.io

Group: Everest

Discovered by ransomware.live: 2026-01-05

Estimated attack date: 2026-01-05

Country: HK

Description:

[AI generated] Bolttech.io is an insurtech company that drives digital transformation in the insurance and protection industry. They provide insurance technology solutions including device protection, insurtech as a service, and digital brokerage services. The company aims to improve customer experiences, offer innovative products and services, and drive growth across Asia, Europe, and North America.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 0

Third Party Employee Credentials: 11


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • bolttech-io.mail.protection.outlook.com.
TXT Records
  • mongodb-site-verification=ATHLH6ToJT9lfNT9RU8MUQMaemVJYLvc
  • nitro-verification-code=LTI4Nzg5OTkzODIxNjQ2MjY1NTg=
  • onetrust-domain-verification=cc5c352bee4b43e198aeeb1f7441969a
  • v=spf1 include:spf.messagelabs.com include:spf.protection.outlook.com include:spf.mandrillapp.com include:servers.mcsv.net include:_spf.qemailserver.com include:_spf.psm.knowbe4.com -all
  • Lig7drtE=2e0de4252aa4682d025e3d37a847f810
  • atlassian-domain-verification=WcEhffiUQkgcwYgYeTlRtlgqN5haGaGbswhLv0eMvtD42xl7mdMhBk6JCWJ6Qw0I
  • docusign=59ff6272-0c93-4c72-aa16-fa7d56915677
  • google-site-verification=FWsOYgNdZeN59sq6iCCNzZrHFR5rXfcqsOjf_K9YkFs
  • google-site-verification=Z23cTM0ENJBLXLG70FikLN7m5t59OPK-eH7EJLcvlCQ
  • google-site-verification=ertfyMvaTG469ctjZdwshRWQeawLuRESjehXCW85eO4
  • hcp-domain-verification=eb5ec3d4345d60c57af5cb5df67b613be5e57dcda60d9220021aeedd8138dfec
  • hubspot-domain-verification=NTVhNTYxZTEtYzNkOS00YjE2LTk2NGQtNjVhYmVkMDgxNTdh
  • miro-verification=8f1ba5c41c8f3004a0a3ac5c39c1505b100f2841
Cloud / SaaS Services Detected
Atlassian Mailchimp Miro KnowBe4 Mandrill OneTrust DocuSign

Leak Screenshot:

Leak Screenshot