Group:
Lynx
Discovered by ransomware.live: 2025-01-11
Estimated attack date:
2025-01-11
Country:
Description:
No brand spells heritage like Jim Thompson, The Thai Silk Company founded in 1951 by James H.W. Thompson, a visionary aesthete, with the aim of reviving the country’s silk industry. Jim Thompson has become synonymous with sumptuous fabrics and exquisite, intricate motifs that reflect the founder’s great love for the Thai people and their culture. The label which encompasses fashion and accessories, home furnishings, as well as fine cuisine champions local expert craftsmen, contemporary designers and artists, thus bridging the gap between heritage and modernity. Today, Jim Thompson is the iconic global lifestyle brand from Thailand with a reputation for beautiful silks.
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 16
Third Party Employee Credentials: 9
External Attack Surface:
12
DNS Records:
The following DNS records were found for the victim's domain.
- domain.operations@web.com
- jimthompson-com.mail.protection.outlook.com.
- klaviyo-site-verification=V2guYT
- mandrill_verify.IDJPnMMG5F3qerZqlVnstw
- mandrill_verify.LfZ-ePPnxMqpmYnAVDRznQ
- nog0v0mu5bc20b5q4kcaj7n40j
- v=spf1 include:spf.protection.outlook.com -all
- zoho-verification=zb99532393.zmverify.zoho.com
- 00D0T0000008ley=1TBBA0000000085
- 13rterjs81qc3cvvj6em4diq0b
- brevo-code:d65c7018398221f94c4cca5c822ac7ac
- google-site-verification=nmdGYWs05xX-WCf0OgW0vQG6vMOSK264y6v0MZ1xDXQ
- google-site-verification=seLFpN_qTaVfLndvttipAzROE1B08X5HGXiUretTFAE
- include:_spf.salesforce.com
- include:spf.protection.outlook.com include:spf.mandrillapp.com ~all
- klaviyo-site-verification=RT4sBT
- klaviyo-site-verification=TWcATZ
Cloud / SaaS Services Detected
Mailchimp
Salesforce
Zoho Campaigns
Mandrill
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.