Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo EdisonLearning

Group: Royal

Discovered by ransomware.live: 2023-05-01

Estimated attack date: 2023-04-26

Description:

EdisonLearning provides education management solutions, alternative education, personal learning plans, and turnaround services for underperforming schools. 20GB of their organization data including personal information of employees and students will be uploaded here early next week. Looks like knowledge providers missed some lessons of cyber security. Recently we gave one to EdisonLearning and they have failed.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d186425a.ess.barracudanetworks.com.
  • d186425b.ess.barracudanetworks.com.
TXT Records
  • v=spf1 ip4:71.24.27.187 include:spf.ess.barracudanetworks.com include:_spf.trustifi.com ip4:52.73.143.252 ip4:52.54.159.237 include:spf.protection.outlook.com include:spf.emailsignatures365.com include:_spf.psm.knowbe4.com include:mail.zendesk.com -all
  • MS=ms42799206
  • google-site-verification=3zY5pP-xjN8gJX_Gm9NO2BZ-RIlkV3K87hdRsIin_Ug
  • google-site-verification=gg5Gwch7dcUoRO2TJ4TGh739TCmNC_i1JduyYKx6nzU
Cloud / SaaS Services Detected
Microsoft 365 Zendesk KnowBe4

Leak Screenshot:

Leak Screenshot