Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Polizia italia mail access

Group: babuk2

Discovered by ransomware.live: 2025-04-03

Estimated attack date: 2025-04-03

Country: IT

Description:

Polizia italia mail access


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 653

Compromised Users: 10095

Third Party Employee Credentials: 378


External Attack Surface: 181


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mx.tn02.pelconsip.aruba.it.
TXT Records
  • 5mqds1nv2xj8h3chw7ml6v839bx9jk6c
  • DirectFedPassiveSignInUri=https://ssops.poliziadistato.it/affwebservices/public/saml2sso
  • poliziadistato.it_convenzionepel_10032021
  • passiveSignInUri=https://ssops.poliziadistato.it/affwebservices/public/saml2sso
  • q97tj32lq08p20qw9s4dbm2tx9f35j10
  • v=spf1 mx a ip4:77.73.61.70 ip4:212.14.133.88 ip4:217.61.8.72/26 include:spf.protection.outlook.com -all
  • ttzq7wf2jj00l311jvj91n6lh0jk4n3s
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot