Discovered
2026-04-17
Est. attack date
2026-04-17
Country
Description:
[AI generated] Qatar Biomedical Research Institute (QBRI) is a research institute based in Qatar, operating under Hamad Bin Khalifa University. It focuses on biomedical research in areas such as genomics, diabetes, cancer, and neurological disorders. QBRI aims to advance precision medicine and translational research to address health challenges prevalent in Qatar and the broader region, contributing to the country's science and innovation goals.
Infostealer activity detected by HudsonRock
Compromised Employees: 25
Compromised Users: 5780
Third Party Employee Credentials: 83
External Attack Surface:
111
DNS Records:
The following DNS records were found for the victim's domain.
- qvgd9ska9dl84plll9ircqkpdo
- MS=ms95764401
- v=spf1 ip4:86.36.20.27 include:spf.protection.outlook.com include:spf-westeu.emailsignatures365.com include:bmsend.com include:_spf.qualtrics.com -all
- MS=AC5D6960953421495A2DE2F03AFCB4B701E428B8 TTL: 3600
- google-site-verification=qsvqIO2byUWNWQL9tr0aw7BRsMJpKU4ri0G9w48aJn8
- dr145klj5996crguqn6s63csem
- google-site-verification=TzLFVIo_fixdbfMpLHyLljgs6HDLQ_k5YrzKqT7r-60
- 4ovnlbuk6dq29vdtgsq71i1stt
- qI7r0ci6LugFVJ7FVoTu31wQO3PznS9lalK0r1xLZ/Erc3/en2Qf9QwNTAjczwtRLjAdba90VJtrwnsa03aYTA==
- slia9p7h5h0kkki5bd0aje8cvm
- google-site-verification=CYfawi-R-v9DPXsf7Sv2cAzEPli2GeNZ003NvTsXoio
- docusign=1eff46c1-bf0a-454f-8e1e-0ab08e77d364
- adobe-idp-site-verification=346bb9f621acbb492bc829c8864614a0700c4d7762fdebe30e056f94d5c76e40
- Q0A1T28600 v=spf1 include:hbku.edu.qa -all
- 142mcktln9rrg68j6cqmt1hd4
- beaplttve81btaa6dvpvmev3i4
- docusign=46785ffe-8cad-40fd-9507-8bcb10116ce8
- apple-domain-verification=3sUTfw22YeVPDa4n
- ciscocidomainverification=761b28ba244ceffedb65f88b44edd56229539bc60fff7ce271f5a77688b72201
- pe8j4ppe6378ac8ijfbacuuh4m
- q71r2uqao8562op9r3qlf2mqf7
- docusign=8468254d-d2d7-4d2d-b428-e6f46018e201
- ahrefs-site-verification_45460c44532f7e4f51cb87e5852640c60c04c159e0f654cc24655295484d8e91
- google-site-verification=YeGvLKUDsL2m0srdmrrChGflihItL62K4ESInzdn694
- docusign=771c44c3-a95c-4758-aee7-8db6e004ef1f
- 9daagdikivgeg30t2qbaihluri
- 61vm5i1tmpddfd0sg8k67m5rfp
- Dynatrace-site-verification=66b56426-2985-4c72-9f49-046d200f9933__rgkh26ac9ght2bsq6frqlq749v
Cloud / SaaS Services Detected
Adobe
Apple
Microsoft 365
DocuSign
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.