Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Volkswagen Group

Group: stormous

Discovered by ransomware.live: 2025-05-31

Estimated attack date: 2025-05-31

Country: DE

Description:

User account data (partially hidden emails) Authentication tokens (OAuth tokens, JWT tokens) Login links for internal systems (e.g., https://identity.vwgroup.io) Session cookies (JSESSIONID and others) identity and access information (scopes such as email, profile, vin, phone, etc.) Authentication and access control details (redirect_uri, state, nonce)



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse 1api.net
  • info domain-contact.org
MX Records
  • mx20.vwgroup.com.
  • mx10.vwgroup.com.
TXT Records
  • No TXT records found.
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot