Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

atlantatech.edu

atlantatech.edu

Discovered 2023-10-09 17:39 UTC
Est. attack date 2023-10-09
Country US

Description:

Atlanta Technical College is a public technical college in Atlanta, Georgia. It is part of the Technical College System of Georgia and provides education services for Fulton and Clayton counties.

Infostealer activity detected by HudsonRock

Compromised Employees: 11

Compromised Users: 177

Third Party Employee Credentials: 77


External Attack Surface: 70


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mx1.hc4161-98.iphmx.com. Cisco/IronPort
  • mx2.hc4161-98.iphmx.com. Cisco/IronPort
TXT Records
  • pardot883763=cc95b8b9575ceb49d9e89675323d8635a95df946fd4ff36215f926e9abe221be
  • cahu9va0av15vemf62gpkubg2g
  • uclb1bgmvpmm40udft9bnv0hbi
  • v=spf1 include:spf.protection.outlook.com include:_netblocks.mimecast.com include:spf-na.exlibrisgroup.com include:mh.blackboard.com a:dnsus1.accellion.com ip4:54.159.73.37 ip4:34.197.250.100 ip4:52.72.252.246 ip4:191.236.119.221 ip4:72.162.240.153 ip4:72" ".162.240.154 ip4:68.232.141.210 ip4:107.20.210.250 ip4:52.1.14.157 ip4:64.207.178.196 ip4:167.89.16.8 -all
  • v=spf1 ip4:176.31.145.254 include:_spf.elasticemail.com ~ALL
  • u2BRZUzDLaYo93cUZWELq2qqFvjAMWNcGqjeqKOvfb1R6cWXXfuxg3NnC6KluKzhzXN4cr5INsITeceJt5Vt1w==
  • MS=1C7754C360ADB92A53BBD251CD9EB787719D0273
  • exists:%{i}.spf.hc4161-98.iphmx.com
  • google-site-verification=JRYuJ5sdInokb1htVuD3VyJAvtO8vU5J7j9-pPbPq1c
  • cisco-ci-domain-verification=1a9c6dd2ad91ee422763dec638eb3e23411cd2ee72f529b0827b90fdc0d1b073
Cloud / SaaS Services Detected
Salesforce Cisco Mimecast

Leak Screenshot:

Leak Screenshot