Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-09-18
Est. attack date 2025-09-17
Country US
City Atlanta

Description:

MMI Direct is a leading data processor that specializes in provid ing services like NCOA, PCOA, analytics, list fulfillment, merge purge, and data append to nonprofits, businesses, and government clients. We are going to upload 116gb corporate data. Employee files (Pass ports, DLs, birth and death certificates, interviews and other pe rsonal documents), medical information, HR data, contracts and ag reements, financial information, client information, NDAs, etc.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • sw.mmidirect.com.
  • mf.mmidirect.com.
TXT Records
  • v=spf1 mx ip4:108.40.78.49 ip4:208.66.204.0/24 include:mailgun.org include:sendgrid.net include:spf.protection.outlook.com include:amazonses.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail Mailgun SendGrid