Group:
Lynx
Discovered by ransomware.live: 2025-02-24
Estimated attack date:
2025-02-16
Country:
Description:
Geokon, Incorporated designs, manufactures and supplies geotechnical sensors and instrumentation for use in civil, mining, and structural engineering projects in the United States and internationally. The company offers extensometers, piezometers, strain gages, crack meters, joint meters, load cells, settlement sensors, pressure cells, inclinometers and data loggers, and many other custom items. It also provides semiconductor piezometers and pressure transducers; and thermistor probes and strings, temperature sensors, fiber optic temperature sensors, cables, vibration monitors, and water level meters, as well as Nold DeAerator, which provides a means of removing dissolved gasses from fluids. In addition, the company offers custom design services to produce custom instrumentation for special applications; instruments, readouts, and data loggers for rent on short and long-term basis; and installation and training services.
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 6
Third Party Employee Credentials: 1
External Attack Surface:
2
DNS Records:
The following DNS records were found for the victim's domain.
- domain.operations@web.com
- geokon-com.mail.protection.outlook.com.
- v=spf1 include:5cx15i7cxx.powerspf.com -all
- MS=F5E1BF7B48F74AFBF60C646E6C71536D6601DF7F
- google-site-verification=9AEL9YHZoDjxikjwDYZ6Y5igZpgqSd279YGK_7lpCys
- MS=ms15798572
- google-site-verification=Ah3sFY_D0-jZ6GA38xuOkHBJrjTeRrzJHQ4HGltNvxg
- MS=ms58003205
- mailigen-site-verification=0909c7fda777882f4ca9c5ea175ccdda
Cloud / SaaS Services Detected
Microsoft 365
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.