Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Globes

Group: medusa

Discovered by ransomware.live: 2024-07-23

Estimated attack date: 2024-07-22

Country: IL

Description:

Globes - periodical publishing, coverage of Israeli business in management, investment, technology, law, accounting, and marketing. Globes corporate office is located in 53 Etzel St, Rishon LeZiyyon, Central District, 75706, Israel and has 298 employees.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 526

Third Party Employee Credentials: 2


External Attack Surface: 62



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • cert globes.co.il
MX Records
  • globes-co-il.mail.protection.outlook.com.
TXT Records
  • kkbtlehkkfdtud8aq9rd09qjbj
  • google-site-verification=m67u21eXooB-fv6ZBkrdkhsM0x6ee-vJBkqhhXCWauw
  • MS=ms70536256
  • v=spf1 a mx ip4:80.70.128.51 ip4:80.70.128.5 ip4:82.166.233.233 ip4:80.70.128.44 ip4:80.70.128.45 include:emailv.com include:outbox.co.il include:spf.mandrillapp.com include:spf.protection.outlook.com include:sitemail.globes.co.il ~all
  • google-site-verification=KTfy-6VRQIDtZ4E69SKgLMIym3XCUz_R-78filUIVDU
  • ktnb1li88p09mtnid55b2aq15t
  • google-site-verification=-I_IbXhheO1UqqOvt7qc27ehIMxFNrWLEBqB7rBjARE
  • Y+w+ClFADIyoL4qQfD4E4GIMYaXgm934+xRh1/TmYWsQzHeO1GPrZldYNaiOdt6rhLWeAjQMB7AjCjGUwdkxxw==
  • ccivsnlrb3een65ripucs7aiao
  • google-site-verification=XkFObIT_xz2lOqoS9PlmF2hw09FsKut7YXDusKOEftY
  • q3iuaqn1m6nh6s8tmtllprjni4
Cloud / SaaS Services Detected
Microsoft 365 Mandrill

Leak Screenshot:

Leak Screenshot