Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo MeridianLink

Group: Alphv

Discovered by ransomware.live: 2023-11-15

Estimated attack date: 2023-11-15

Description:

MeridianLink is the provider of Loan Origination System & Digital Lending Platform for Banks, Credit Unions, & Other Financial Institutions.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namecheap.com
MX Records
  • meridianlink-com.mail.protection.outlook.com.
TXT Records
  • 9uHh2n0WV4Z4J34rk6XvWykpHQAJY3Mzp/m7fnOG8/Y77lWiEdwgjQXSAEeM0kwlqJnJKjlw/aC5Opfoc9Qugg==
  • docusign=05d132f8-1e49-4791-a7a1-e5f86672fd84
  • google-site-verification=D70YeInTfWFKYD5I39PDTe9JZ_nkJaN89J69u5HgNGU
  • google-site-verification=hLLtqsMdR3tMmmR5l4GfVvNiRszz1DW1MciIxhm8et8
  • google-site-verification=hMZusBr9QGZBevpx-ThVetZuruG-PvqNSqMHwdVDLZ0
  • v=spf1 ip4:12.106.86.0/24 ip4:198.185.62.0/23 ip4:208.81.32.0/24 ip4:208.81.34.0/24 ip4:20.184.246.208/28 include:spf.protection.outlook.com include:_spf.salesforce.com include:sent-via.netsuite.com include:_spf.qualtrics.com -all
  • asv=d9467e7d5c59c59ebae177fc62b9ef47
  • smartsheet-site-validation=bxWVq_jGnBGwkqqxB4Y1X0wspm4Qhis7
  • mongodb-site-verification=p9Oppt8cI2nfshMf233BANDlCONtP7ad
  • atlassian-domain-verification=6em8tJDB2M/mOR0cCwxaSBSJagSj9SOqamLoMqexnX/f8hN/snztFldZlXRaAIbu
  • bw=SsjTl80uV9qjb2ZFbQZcsWqK1f4HnzUhvueegiXb3qYo
  • google-site-verification=DUvBYj_tVXmj9xyikNqKrAlHVzDbGc6HDzfjg98RICM
  • calendly-site-verification=HYe496UdscrbJz61I4SB6P2ec2ApXty0LNxa2wTzJ
  • adobe-idp-site-verification=f8c4659cd3e68901c3bee3a8bfad52f78fe99b12dbedbea652082cd0fcbcb78e
  • MS=ms62220079
Cloud / SaaS Services Detected
Adobe Atlassian Microsoft 365 Salesforce DocuSign

Leak Screenshot:

Leak Screenshot