Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo akanea.com

Group: lockbit3

Discovered by ransomware.live: 2024-08-30

Estimated attack date: 2024-05-15

Country: FR

Description:

AKANEA, éditeur de logiciels pour la gestion et logistique : transport routier, transport international maritime et aérien, agroalimentaire et douane.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 37

Third Party Employee Credentials: 2


External Attack Surface: 25



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse support.gandi.net
  • 219e3caa8e7df4095d95b9aad83d7192-1745091 contact.gandi.net
MX Records
  • vade-mx-fr02.hornetsecurity.com.
  • vade-mx-eu-fallback02.hornetsecurity.com.
  • vade-mx-eu-fallback01.hornetsecurity.com.
  • vade-mx-fr01.hornetsecurity.com.
TXT Records
  • logmein-verification-code=7ad426cb-c461-48d2-b42a-865a563261d2
  • spf2.0/pra ip4:212.67.32.0/24 ip4:195.200.78.0/24 -all
  • openai-domain-verification=dv-458cF6bMFvcu2dNmFN06B1ip
  • _globalsign-domain-verification=fGCddZ6C5CiSK6iC6OCWvO5dEMRrTTZBG1NTukkRt_
  • Sendinblue-code:2a2759384220fc5f9333dae9cea772f2
  • _globalsign-domain-verification=eW4sOtlMVrFhiVIMDwzDi8BrbBN6RlHTvoJpVTo_Jl
  • MS=ms69575025
  • google-site-verification=ktdUKbTdQ_XOVN1M29xRa7N8xe1jKUY-dZBZ0tVOOyc
  • v=spf1 ip4:212.67.34.0/24 ip4:212.67.40.185/32 ip4:212.67.32.0/24 ip4:213.186.33.8 ip4:195.200.78.0/24 ip4:85.204.21.1 ip4:176.116.26.24/29" " ip4:81.23.32.0/20 ip4:185.252.195.151/32 ip4:185.252.195.152/30 ip4:185.252.195.156/32 ip4:89.35.104.146/32 ip4:193.46.85.199/32" " include:spf.protection.outlook.com include:8691471.spf07.hubspotemail.net include:sendgrid.net include:_spf.google.com include:servers.mcsv.net
Cloud / SaaS Services Detected
HubSpot Microsoft 365 LogMeIn SendGrid

Leak Screenshot:

Leak Screenshot