Group:
Blackbasta
Discovered by ransomware.live: 2024-01-23
Estimated attack date:
2023-12-11
Country:
Description:
ENVEA is leading provider of environmental management solutions for the protection of people and planet. We are committed to sustainable practices to ensure a greener and healthier future for all. We have been at the forefront of developing cutting-edge technologies and solutions to tackle pressing environmental issues. With a comprehensive range of products and services, we enable industries, governments, and communities to effectively monitor, control, and manage their environmental impact. We are a customer driven company where our technology, industry-leading expertise, and passion drives the development of innovative monitoring solutions that delivers your environmental goals in many industries, governments, and communities.SITE: www.envea.global Address : ENVEA UK ENVEA House, Rose and Crown Road, Swavesey CB24 4RB. CambridgeALL DATA SIZE: 70gb 1. Ressources Humaines 2. Compta 3. Commun 4. Contracts and etc…
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 13
Third Party Employee Credentials: 2
External Attack Surface:
4
DNS Records:
The following DNS records were found for the victim's domain.
- envea-global.mail.protection.outlook.com.
- k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGoQCNwAQdJBy23MrShs1EuHqK/dtDC33QrTqgWd9CJmtM3CK2ZiTYugkhcxnkEtGbzg+IJqcDRNkZHyoRezTf6QbinBB2dbyANEuwKI5DVRBFowQOj9zvM3IvxAEboMlb0szUjAoML94HOkKuGuCkdZ1gbVEi3GcVwrIQphal1QIDAQAB;t=y;
- zoho-verification=zb15423177.zmverify.zoho.com
- 1|www.envea.global
- v=spf1 a include:mx.ovh.com include:spf.protection.outlook.com -all
- pardot904822=61abc88a6d4aff5d0dfd1bbf6505ab72cfc9976340b29f49be414a2beae66ee1
- google-site-verification=QbzfkvDhBdh73VZrenS-yr9SFBjMRF8I4JEGMZTyinw
- google-site-verification=La0VXMoFNH_YHhSvm_6O4XBEWKc3r0NV-28zTV-Ltdg
Cloud / SaaS Services Detected
Salesforce
Zoho Campaigns
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.