Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Witzenberg Municipality

Group: Thegentlemen

Discovered by ransomware.live: 2026-01-20

Estimated attack date: 2026-01-20

Country: ZA

Description:

www.witzenberg.gov.za https://www.zoominfo.com/c/witzenberg-municipality/430430424 Witzenberg Municipality is located in the Cape Winelands District, comprising the towns of Ceres, Tulbagh, Wolseley, Op-die-Berg, and Prince Alfreds Hamlet. The municipality is known for its agricultural production, including deciduous fruits, vegetables, and wine, and has established itself as a family tourist destination and adventure tourism hub. It offers a variety of activities such as historical tours, hiking, and nature experiences. The intended clients include tourists seeking adventure and families looking for recreational activities in a picturesque setting.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • witzenberg-gov-za.mail.protection.outlook.com.
TXT Records
  • v=spf1 mx a include:spf.host-h.net include:spf.protection.outlook.com ~all
  • MS=EE8ECFAA9DB319D28D1310C1239400264223A47E
  • google-site-verification=vp4uJ7OyHPOpto19mvZ2y9V6YzFRcbuDGOcJVjaCfNA
  • _gwx9hq3jp7do9rt5jz2rpgrm7w76afd
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot