Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo INHA University

Group: Gunra

Discovered by ransomware.live: 2025-12-29

Estimated attack date: 2025-12-29

Country: KR

Data exfiltrated: 650GB

Description:

[AI generated] INHA University is a private research university located in Incheon, South Korea. It was established in 1954 and is currently known for its programs in engineering, technology, and management. The university is named after the acronym of the Independence and Nationalism sought in developing Highly skilled Authorities, highlighting its commitment to fostering leaders.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 13

Compromised Users: 865

Third Party Employee Credentials: 54


External Attack Surface: 101


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • ALT2.ASPMX.L.GOOGLE.COM.
  • ALT1.ASPMX.L.GOOGLE.COM.
  • ALT4.ASPMX.L.GOOGLE.COM.
  • ALT3.ASPMX.L.GOOGLE.COM.
  • ASPMX.L.GOOGLE.COM.
TXT Records
  • google-site-verification=OViCgKchYKjr0s0k3SXZqP-tgDIsmbNc22OiDLvKEBc
  • adobe-idp-site-verification=9a577443fc84a5070b865dce24d91ef1afa1c977cb6396f13194d7a8b7518829
  • 13.11.2025
  • ZOOM_verify_EWpNqEhcR_GTzwyinv83gw
  • MS=569C742D22AAC6CDAA4A8B93B8A351AA95945870
  • zoom= 9727534
  • v=spf1 ip4:165.246.13.68 ip4:209.85.128.0/17 ip4:165.246.13.136 ip4:203.251.154.192/27 include:spf-ap.exlibrisgroup.com include:_spf.google.com ~all
Cloud / SaaS Services Detected
Adobe Zoom

Leak Screenshot:

Leak Screenshot