Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo LiveAction

Group: snatch

Discovered by ransomware.live: 2023-05-22

Estimated attack date: 2023-05-22

Description:

LiveAction’s Network Intelligence platform transforms complex data into actionable insights, providing organizations with a comprehensive view of their network, from network and application performance to security. Enterprise teams can rapidly take action to resolve network issues at scale, accelerate threat response, increase employee productivity, and


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 18

Third Party Employee Credentials: 1


External Attack Surface: 9



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • liveaction-com.mail.protection.outlook.com.
TXT Records
  • ZOOM_verify_1vpxc3B_Sm-r8Lj7Sq1MnQ
  • atlassian-domain-verification=wF96co+LrzRyZyOHcG0+GsCkr/A1ekstBSNSNz8SMwdvXfFXUXZuki7aDzDkNLb9
  • google-site-verification=QNNynUeB3jWnislH820XPfXoA4mC2_mfssn0ev7mwpw
  • ahrefs-site-verification_627be80c4bbb346b727e33be281a99700e8920c670508917cffbe882f102d6b8
  • eMNk1bqolN9VTtKYfVF+kw==
  • 270CF9ECE1
  • MS=ms25384074
  • v=spf1 ip4:52.11.74.134 ip4:52.211.233.151 ip4:54.70.224.32 include:_spf.salesforce.com include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:mktomail.com -all
  • google-site-verification=LOQlzl6sEBuoWjyV-FNldieC0Eyoy0SJqppz36pMrv0
  • MS=ms23030239
  • cisco-ci-domain-verification=2dde072d7db3be6f02cf3c0cb0c5290fee4845f40deba13f275b513079f2d8fa
  • google-site-verification=koTxyZ8HKG8ocLZGgN75kUrb4n94YiEgq0enhF4EUZI
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Salesforce Marketo Cisco Zoom

Leak Screenshot:

Leak Screenshot