Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Standard Bank Group

standardbank.com

Discovered 2026-05-04 14:08 UTC
Est. attack date 2026-02-27
Country ZA

Description:

Beginning on February 27th 2026, The 3 week long attack on both Standard Bank and Liberty has resulted in 1.2TB of data being exfiltrated from internal servers.

Infostealer activity detected by HudsonRock

Compromised Employees: 12

Compromised Users: 575

Third Party Employee Credentials: 8


External Attack Surface: 65


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuselexsynergy.com
MX Records
  • standardbank-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • MS=ms41359197
  • cyp6fq62y27xw49r3fjbgk2yc14cnqcw
  • /QCOEzFl8s+tcPX8YW0DxS/dzODppZznuHyXt3h/yt25x1f8dBKs8GyReB/K+12m3EAdqLOEcNd6uzcIGEpLBg==
  • _96spbxhbd59oak6wzi7beo1z80477d4
  • Foxit-domain-verification=1da8cb5a06871c5335f19e84bbbca75e
  • standardsbg.com" "180" "sec" "adobe-idp-site-verification=84bf037facb37d9dd04a2f
  • j4ry2knjf1xzp4gngz9d6psd989vwzff
  • atlassian-domain-verification=zmcPfGSksYaS1TIXQODsz9hGIT63FKbmPZtmzmOtGzkYOSRCI7zMR3779FwCHF4x
  • v=spf1 ip4:161.71.36.242/31 ip4:161.71.36.244/30 ip4:196.8.96.0/19 ip4:18.199.10.73 include:spf.mandrillapp.com include:mailcontrol.com include:spf.protection.outlook.com include:email.insidedata.co.za ~all
  • standardsbg.com" "180" "sec" "adobe-sign-verification=f378a73d505e999c3a4ec433cd
  • google-site-verification=A8fPfTM5nxxm51pO0-v5e3odp9KJKADqsE_zCs3wl6g
  • BvaIMe75g0jxNiEz6NJ5loX9tlgWK/dgpCtzQE4RiGRbuT+f/ykIfP+GCgbB8UqpfcPlmsi9BfrFhQZuhEBaKg==
  • hnqx7w59p81vz9v556g77ngdxf3cns3z
  • perplexity-ai-domain-verification-w199hz=UrFzvhLQl24DfSvYhcXogs7Nn
  • facebook-domain-verification=4jj3p3dhjyiz8ee7wdvqdagm1cguhj
  • ca3-d4960cdd02604d45ac309638f644d12a
  • brevo-code:5905d17c0e456cf9499a0e676a6d5e5c
  • _w7mo9degtytyp3nxh71v2s5dmvwdzhd
Cloud / SaaS Services Detected
Adobe Atlassian Microsoft 365 Mandrill