Discovered
2025-08-29
Est. attack date
2025-08-29
Country
Description:
Loyola College - is a large educational institution with thousands of students! Hundreds of employees! This college is very poorly protected in our reality, and therefore data was compromised! The full history and database of all students and all their private information were freely available! Also, a large number of financial, legal and other documents!
Infostealer activity detected by HudsonRock
Compromised Employees: 15
Compromised Users: 12
Third Party Employee Credentials: 31
External Attack Surface:
12
DNS Records:
The following DNS records were found for the victim's domain.
- loyola-vic-edu-au.mail.protection.outlook.com.
- aQSHMR6Yfc4PM6nuP6p069I3QtOLrzdf3kofc6eekffcNLY7hqmds8DC1hNm0gIv2y9cSBkrYLv+ROvg00dThQ==
- 2025030305233646tpfsjt86e06ox9oop4vxcazwz98heub1xs4tzi19ezwio5bm
- v=spf1 include:sendgrid.net include:spf.protection.outlook.com ip4:103.17.233.101 ip4:103.17.235.224/29 ip4:27.131.105.10 ip4:209.61.151.0/24 ip4:166.78.68.0/22 ip4:198.61.254.0/23 ip4:192.237.158.0/23 ip4:23.253.182.0/23 ip4:104.130.96.0/28 ip4:146.20.11" "3.0/24 ip4:146.20.191.0/24 ip4:159.135.224.0/20 ip4:69.72.32.0/20 ip4:104.130.122.0/23 ip4:146.20.112.0/26 ip4:161.38.192.0/20 ip4:143.55.224.0/21 ip4:143.55.232.0/22 ip4:159.112.240.0/20 ip4:198.244.48.0/20 ip4:204.220.160.0/20 mx a -all
- apple-domain-verification=dvCV0Vb1DosrU5Qb
- 0I967fc2M+qbbEiWvzgtHOPB1K1qdHlAHIrV8sUj5S8wJlx7P8/hgpKBqMYOvApjWdFWiwb5gUNXQz/FkxYTAw==
- 202403041029473lwuz4uxh4pitmnqgps1xrst3s5t1qz99hi2kokc8wqtny42kp
- autodesk-domain-verification=3PLooSjl43HXEoQDhWA-
- adobe-idp-site-verification=4ea72ae919f55b2c6e6c4e2e6376412d8c84298026830f28988cb73fe9b72242
- 202603032319542pgf0hzrqmssr4tf9vcgprekilkt7c2w0gsqzegr5ts7vbnl3c
- google-site-verification=1dH-HSi2ZB1G7gq6AZkmng0Uvcq2_eDEMmmgw-7l60g
- 202303100040290d9t1gcnvt9ctisaoq7nd97vnjor0gqee8y4g02mdlnvswtp08
Cloud / SaaS Services Detected
Adobe
Apple
Autodesk
SendGrid
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.