Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo egyptair.com 5 with 10K !

Group: funksec

Discovered by ransomware.live: 2024-12-23

Estimated attack date: 2024-12-23

Country: EG

Description:

[AI generated] Certainly! EgyptAir is the national airline of Egypt, headquartered in Cairo. Established in 1932, it operates scheduled passenger and freight services to over 70 destinations in the Middle East, Europe, Africa, Asia, and the Americas. As a member of the Star Alliance, EgyptAir offers a range of services and amenities, including in-flight entertainment and a frequent flyer program. The airline prioritizes safety and customer satisfaction.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 366

Compromised Users: 2402

Third Party Employee Credentials: 284


External Attack Surface: 117



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • compliance domain-inc.net
MX Records
  • d880a.ess.barracudanetworks.com.
  • d880b.ess.barracudanetworks.com.
  • email.egyptair.com.
TXT Records
  • MS=ms35242566
  • _7jznq6djnss6hqzcq4gedp3zyk0i2q2
  • uNQpJe98AxbwW5WbZHTio9Vvgx8UmhjBpZx0vaeZWwX7+Yr3tgCT2uKpZrEO/lWMdMGHPiJe8k/2Kzlkp8gimA==
  • v=spf1 mx ip4:205.220.178.170 ip4:205.220.166.170 ip4:62.241.134.163 ip4:196.205.23.147 ip4:82.150.225.79 ip4:171.17.133.140 ip4:144.208.68.117 ip4:52.187.185.239 ip4:52.237.79.80 ip4:104.208.96.203 ip4:52.187.30.105 ip4:111.93.242.194 ip4:217.139.15.75 i" "p4:217.139.15.76 include:spf.protection.outlook.com include:mailmarketingspf.linkdatacenter.net ~all"
  • 0FAU7B6U5VS9H3WDYXBTBBRSME4SLOZODEPQ4DS4
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot