Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo X-lab group

Group: fog

Discovered by ransomware.live: 2025-02-04

Estimated attack date: 2025-02-03

Country: EG

Description:

Extract from Gitlabs: Bolin Centre for Climate Research, X-lab group, Madia


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 12

Compromised Users: 5

Third Party Employee Credentials: 7


External Attack Surface: 16



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • webmail.xlab-group.com.
TXT Records
  • v=spf1 a mx include:_spf.google.com -all
  • MS=10B90443FD08FE4C6E216953CB42CB8F32A79D69
  • google-site-verification=4wqAsFypYYb3z41K7IWA_blRD1hm5_iR7wGOR_OVecM
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot