Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo South St Paul Public Schools

Group: Blacksuit

Discovered by ransomware.live: 2024-03-15

Estimated attack date: 2024-03-15

Country: US

Description:

South St Paul Public Schools is a company that operates in the Education industry. It employs 251-500 people and has $25M-$50M of revenue.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 28

Third Party Employee Credentials: 7


External Attack Surface: 6



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • sspps-org.mail.protection.outlook.com.
TXT Records
  • t5S6/s3qYor6V1Q5x56tRr/k3Y2W4GUhlsFjrR59VNngI+dU1VqHXFVGSOvu56ARoWvB83cmYzmQKUKNI4hBYg==
  • v=DKIM1;g=*;k=rsa;t=y;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQClX7X5OvjrW42Lf+0arte1PpRLSgywjRnYOjDUyD3GMOwjOUsunq1uLOD/+WmEoSJBUibpa3IhskarmWoFAypRHz1ZCe8x/NdHqgje8QpVjPUPUJcBYKTU6A5qsp52/UvcnZeHpitiy5kLvrZDRNu1ORXwo/kvzzGyomQtaL5UwwIDAQAB
  • v=spf1 include:spf.protection.outlook.com include:_spf.google.com include:mail.region1.k12.mn.us a mx ip4:209.237.115.6 ip4:158.222.82.36 ip4:206.131.139.147 ip4:204.169.120.77 ip4:204.169.20.204 a:mymoodle.sspps.org a:www.sspps.org ~all
  • MS=ms98579807
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot