Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Medusa
Discovered 2024-07-07
Est. attack date 2024-07-07
Country ES
City Madrid

Description:

Viasat offers telematic solutions for the automobile sector, such as car control or fleet and guarantees recovery in case of theft. Viasat Telematics corporate office is located in 6 Avda. Del Arroyo Del Santo, Madrid, Madrid, 28042, Spain. The total amount of data leakage is 98.9 GB

Infostealer activity detected by HudsonRock

Compromised Employees: 19

Compromised Users: 3256

Third Party Employee Credentials: 24


External Attack Surface: 115


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • technical+viasatHRS@authenticweb.com
  • abuse@authenticweb.com
MX Records
  • mxb-0085b301.gslb.gpphosted.com.
  • mxa-0085b301.gslb.gpphosted.com.
TXT Records
  • docker-verification=86b6d587-8f7a-4ed0-9073-a8bfec676255
  • phished-io-verification=W7So51UiTPD1D8HAVkLGkFwbfrVJv6oM
  • smartsheet-site-validation=oGjF88COIi7etfBaN96QpxDvpccG5IqC
  • vmware-cloud-verification-1d185b9e-7ffd-44e3-a47a-c1346dfe156c
  • google-site-verification=MA19KM6p4usvcm7L-8v5OFNmlwZQeO4CKKPuDqBJnT0
  • google-site-verification=gS4FWw8wJj63a6ejPprxcFrtJqVXdTbX5bcSxF4pCDE
  • miro-verification=cea802e1d8f00370341da4c1c5866e0950ddf3b3
  • atlassian-domain-verification=kcrZ4q3NyUi1AeSqQ1+enGxBagznnZB7BvMCp3ZkhaD1GDtwiX84rJrNU9nm1FCV
  • atlassian-domain-verification=Hx819SVeWecVYRMxxAVMzVaPuBRKuQ6QGubx4BSWwVymIBb547uRlrDjrGSgpMvP
  • canva-site-verification=wo4tbkk3mD8tBCh2ATW0Aw
  • paloaltonetworks-site-verification=b6ede5b6383819bedb03318430a83460a4b20acf7b1c70fe6dc1126280f5e7ce
  • slack-domain-verification=otpySC4k9qcJ1q5inYSRGwgLaHBotUUhI4fR8PTb
  • lucid-verification=hbx3fvf*ajc7vhz5UWM
  • v=spf1 include:spf-0085b301.gpphosted.com include:spf-0085b303.pphosted.com -all
  • atlassian-domain-verification=UFs7XL2Ja7afXoQTieXGw/fNQdyLAalAaHGLdoQjAVtquzWv2TCZuWo10EvybWxq
Cloud / SaaS Services Detected
Atlassian Slack Miro Proofpoint

Leak Screenshot:

Leak Screenshot