Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Engikam

Group: fog

Discovered by ransomware.live: 2025-03-06

Estimated attack date: 2025-03-05

Data exfiltrated: 59 GB

Description:

Extract from The 19 biggest gitlabs


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 0


External Attack Surface: 9


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse tucows.com
MX Records
  • mx.engicam.com.
TXT Records
  • v=spf1 mx ip4:195.231.9.144/32 include:spf.webapps.net include:sendgrid.net include:_spf.aruba.it ~all
  • google-site-verification=pe4me3o_j7goyakmm6zf_80rsh4eaaheo8yp0t5k0pw
Cloud / SaaS Services Detected
SendGrid

Leak Screenshot:

Leak Screenshot