Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Lapsus$
Discovered 2026-04-05
Est. attack date 2026-03-29
Country US

Description:

Healthcare research

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • stripe-verification=06A02E150CF9CC74B7F9FAB408D30F02B0D9DCF08C3C3547EB44074392DFAC0E
  • v=spf1 include:sendgrid.net include:servers.mcsv.net include:_spf.salesforce.com include:amazonses.com include:_spf.google.com include:mail.zendesk.com include:mktomail.com include:_spf.firebasemail.com include:docebosaas.com include:46502460.spf05.hubspo" "temail.net mx a:zgateway.zuora.com -all
  • wvfhbrwc48ksqtxx2rb5bnz4z3vt9qzk
  • atlassian-domain-verification=oL5yvOxFPaKyvTfuXLaMB0Y9wvhBtm3ha9AX8Fi9of8f7JxonOVpYSiuuW8zscik
  • facebook-domain-verification=6jpys6nyllpbindk3m3wk7hxyc7r6b
  • firebase=virta-eng-prod
  • google-site-verification=94BETBYOD3qftcyShAI3l0h570aTN-v4CfQhJMKqs6M
  • google-site-verification=WT8HPr4LN-RaBtzmb8VENYZrBSWfEbU0gaUo_20L8FY
  • google-site-verification=ZNjEvK15E5m_V18QgYSXzJ4s66dKzMxJQE_ToHKTK_Y
  • jamf-site-verification=7GMB6oKyV8PF-oONlODljA
  • logmein-verification-code=44878211-459d-49f0-9a71-bc00abea5618
  • miro-verification=e449fba5bb910efb0478069cf6b313bbc810a9ce
  • openai-domain-verification=dv-zLx7Xr6eujY2XVjVCt4QZLqe
Cloud / SaaS Services Detected
Atlassian Amazon SES/WorkMail Mailchimp Salesforce Stripe Marketo Miro LogMeIn JamF Zendesk SendGrid