Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Sangoma Technologies Corporation

sangoma.com

Group Conti
Discovered 2020-12-23
Est. attack date 2020-12-23
Country CA
City Toronto

Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 1085

Third Party Employee Credentials: 8


External Attack Surface: 53


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • sangoma-com.mail.protection.outlook.com.
TXT Records
  • status-page-domain-verification=b878f0dncpxw
  • google-site-verification=1mweFLjuQZDMPk3FyqBp3L1UqmjuMeZN1xzrsjmT7WM
  • status-page-domain-verification=ylxxjymbvfxj
  • atlassian-domain-verification=bQUlQw8aDHKdLN30RDwzz5Mfsonkd3BQj70HhxaPWL6aePd6RIz2RTfHXikiI/wY
  • ca3-fb80826895fe416eb8285207b815b6e0
  • atlassian-domain-verification=9/reNYexUT1aJgV334b2798oX4JGqryHo9ZRvDkdzYjbnz9pwBUMcl9teWOhXM2P
  • adobe-sign-verification=9aebff2252fca389d94e69bd9109afed
  • anthropic-domain-verification-5p7yew=R6gaaF5Sh6OMD9ICENcPHYSQm
  • v=spf1 ip4:52.1.22.184/32 ip4:199.102.239.0/24 ip4:216.207.245.2/32 ip4:199.248.63.0/24 ip4:199.15.180.0/22 ip4:23.21.109.197 ip4:23.21.109.212 ip4:147.160.167.0/26 ip4:198.231.15.1 ip4:3.135.2.154 ip4:35.80.39.149 ip4:3.228.110.137 ip4:54.205.141.235" " include:_spf.google.com include:spf.protection.outlook.com include:_spf.salesforce.com include:amazonses.com include:mktomail.com include:stspg-customer.com include:44965210.spf03.hubspotemail.net ~all
  • google-site-verification=LoDu_SbVPmW5H2f99pJvTiRCpd8Z9QV0lWbd6NOQA4w
  • yHLWFSbt3gs$VeaXT6I@Eov@V^0t5QWXy7DAm^kk*CyLJ!gK78puz32%0ax9HRcy2ndpqvdhet7#@HX*bq%gTnryUtm2D9cS*Yf
Cloud / SaaS Services Detected
Atlassian Amazon SES/WorkMail HubSpot Salesforce Marketo