Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Kuehne + Nagel

Group: Coinbasecartel

Discovered by ransomware.live: 2025-10-13

Estimated attack date: 2025-10-13

Country: CH

Description:

With more than 82,000 employees at almost 1,300 sites in close to 100 countries, the Kuehne+Nagel Group is one of the world's leading logistics pro...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 43

Compromised Users: 1849

Third Party Employee Credentials: 200


External Attack Surface: 125


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain-abuse internetx.com
MX Records
  • mx-in02.eu.retarus.com.
  • mx-in01.eu.retarus.com.
TXT Records
  • 53ace47ccaf1c75f6b7ee3363e3aef3b81ba58e57cde88fc56
  • OSSRH-68050
  • apple-domain-verification=6OIG0W8PA2CqbSGN
  • miro-verification=2b13b70770798102b733b5e517b31273383715f7
  • successfactors-site-verification=YWJjM2IxNTdmNzQzMDFkNWZlNmM4YTVlOTdmNjQwNTNjZTE1YTU1ODhkMjc3OWI4N2I5ZWM2ZWMyOTY1MzIzNA==
  • figma-domain-verification=6c67c075e1498170130b45bb113e47335b4f4a80b59d921d598c77de6941d1ef-1746523121
  • google-site-verification=yfFAII1BId3G0Hk74Y2YuvEc5MaFqm4lPKWoCtexsq8
  • docusign=fa0c56bd-e6c0-461d-aa05-d599c511f652
  • msfpkey=789i1el42qizd16ow3jxgoa1g
  • adobe-idp-site-verification=fbd6c16111d582ad720f7fbc9ca30573c43fffe1a120dd42045a1ee47bb34dd1
  • onetrust-domain-verification=ddb760a924f84eb2838d6413ef21e5f6
  • sprout-social-47747766-8bdc-4ebe-9818-a99341eead0c
  • docker-verification=5219c6cb-14df-423e-a8d4-c576e57695e2
  • atlassian-domain-verification=N3HVpsD78CGbWo9rGTwtLktvJknlub/UsccD5Xx6E5u772g8l4A9ZgqLWYGXS5vg
  • MS=ms54942573
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • google-site-verification=gYLy2oAa5roqrofD5axCQ5r42ZHdP8-LgrFenacE4ys
  • onetrust-domain-verification=c8b0f6a0ba144709b48e3940e04253da
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 Miro OneTrust DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot