Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo HMP Global

Group: Qilin

Discovered by ransomware.live: 2025-10-14

Estimated attack date: 2025-10-14

Country: US

Description:

For 40 years, the company has built trusted brands including Psych Congress, the premier source for mental health education, and the Symposium on Advanced Wound Care (SAWC), the largest wound care meeting in the world. HMP Global partners wit ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 0


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • hmpglobal-com.mail.protection.outlook.com.
TXT Records
  • MS=ms16334767
  • extensis-domain-verification=194d27e7-cafa-4cf2-82b2-5ed9d1fcf8e4
  • dropbox-domain-verification=fn3l61te864m
  • apple-domain-verification=HiK6po5gg8tnfgKM
  • canva-site-verification=18jpKT7EY2md5lDnBAkHJA
  • globalsign-domain-verification=6B1302948754006DB98F25BF18C8C369
  • MS=ms61735819
  • globalsign-domain-verification=EB672A1B4A3DE9AAAD32B043BF7D61B6
  • v=spf1 include:spf.gocadmium.com include:spf.sabre.com include:mail.zendesk.com include:spf.US.exclaimer.net include:sent-via.netsuite.com include:229749.spf05.hubspotemail.net include:spf.protection.outlook.com ~all
  • ZOOM_verify_xVKzgjzdctAscjY99utpYc
  • slack-domain-verification=yHV99lExonwo9MEB34SwpTz0nNNQ8z0ZVAHYBaKl
  • globalsign-domain-verification=EFC373AA29C82CA5BDB82AECBD991C40
  • openai-domain-verification=dv-m5tYkaqQ9jEJCXwMlWd5WadD
  • h1bqecvsnago7av8iuo1vt1v3j
  • google-site-verification=bj6kzJprMKjQ0__YC22TQersCDr96BA20WLq0WrkC7Y
  • formstack-domain-verification=11831c1b677b61a31b6c17ee94c6bbd5
  • globalsign-domain-verification=7CF2DED06C23FC16259BF7EB5F04EB88
  • globalsign-domain-verification=AA30CDFB89485ED1A9BE60AE70DC5B6B
Cloud / SaaS Services Detected
Apple Dropbox HubSpot Microsoft 365 Slack Zendesk Box Zoom

Leak Screenshot:

Leak Screenshot