Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo The University and College Union

Group: incransom

Discovered by ransomware.live: 2024-08-25

Estimated attack date: 2024-08-09

Country: GB

Description:

The University and College Union (UCU) is the largest union for academic and academic-related staff in the UK.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 19

Third Party Employee Credentials: 3


External Attack Surface: 18



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • eu-smtp-inbound-1.mimecast.com.
  • eu-smtp-inbound-2.mimecast.com.
TXT Records
  • v=spf1 ip4:217.33.73.130 ip4:77.72.0.130 ip4:77.72.0.29 ip4:77.72.0.27 ip4:212.64.146.233 ip4:192.254.125.237 ip4:46.33.155.176 ip4:46.33.155.162 ip4:212.104.154.110 ip4:46.33.155.181 ip4:77.72.0.130 include:eu._netblocks.mimecast.com include:app.sgizmo." "com include:spf.protection.outlook.com include:rnmk.com ~all
  • google-site-verification=7G1UMg2PK7kUXKOrBEOSOtbqtRViXwFm6XijKhmqI6U
  • iomlnrv4mp4lv1ugta2fq99ilj
  • 507cw/585oUiy3V1ShG/wRVcHiKfaL7EfbWc4MS1Snv8vzFLwWMgmnSI5Cc9MP+m/nX+kEWzt7q0omkNIdOo6g==
  • amazonses:uE7ort8iLbxfrYMt+7M8M6kKZug+OWLrBp5DsJ7MHVQ=
  • facebook-domain-verification=q37u3brc4lfv4h3kyksidlvjejzlt0
  • 8h09i842oe1pbllsngeg3k36fe
  • arlnhhlvtt08cmavrfo00v9v0a
  • DZC=f4ffWPy
  • MS=ms61570971
  • y6sJEpsP
  • 2sth7jh0jep7lpkjf8ucasdms1
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Mimecast

Leak Screenshot:

Leak Screenshot