Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Hornbill

Group: 8base

Discovered by ransomware.live: 2023-06-15

Estimated attack date: 2023-06-15

Description:

Hornbill is the workflow app everyone can use—across your whole organization Hornbill is an innovator of cloud-based business collaboration technology and applications that engage teams, optimise operations and deliver better customer experiences. Our new collaborative Services Management application combines 2 decades of ITSM experience with a powerful, innovative collaboration platform, allowing teams to connect anywhere, anytime, in any language. Hornbills software supports customers at thousands of commercial and governmental sites worldwidehttps://www.hornbill.com



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse register.it
  • whoiscontact names.co.uk
MX Records
  • hornbill-com.mail.protection.outlook.com.
TXT Records
  • northpass-domain-verification=3bd625f8700d342e08c5736462bf6692
  • v=spf1 mx ip4:83.126.54.37 ip4:195.188.254.41 ip4:78.129.173.107 ip4:78.129.173.119 ip4:83.222.231.136 ip4:87.117.243.10 ip4:78.129.173.114 ip4:139.162.146.48 ip4:83.126.54.43 ip6:2001:4d40:840c:2:d:e165:2485:6921/128 include:spf.protection.outlook.com i" "nclude:mailsenders.netsuite.com include:servers.mcsv.net include:_spf.hornbill.com include:2615421.spf02.hubspotemail.net -all
Cloud / SaaS Services Detected
HubSpot

Leak Screenshot:

Leak Screenshot