Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hpecds.com

Group: apt73

Discovered by ransomware.live: 2024-10-24

Estimated attack date: 2024-10-24

Country: US

Description:

CDS, a Hewlett Packard Enterprise company CDS is a wholly owned subsidiary of Hewlett Packard Enterprise and although an integral part of delivery...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 17

Compromised Users: 17

Third Party Employee Credentials: 27


External Attack Surface: 50



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaints markmonitor.com
  • hpe.domains hpe.com
  • whoisrequest markmonitor.com
MX Records
  • mxa-00975f01.gslb.pphosted.com.
  • mxb-00975f01.gslb.pphosted.com.
TXT Records
  • apple-domain-verification=BjGS8PTWsXeGm1Lx
  • mGXOebbmDklqCZeqcp0WeWxjXthB0r2Qtj1eA6IKKxON8vubHvfYmY7mB1Aku4Qm
  • atlassian-domain-verification=mGXOebbmDklqCZeqcp0WeWxjXthB0r2Qtj1eA6IKKxON8vubHvfYmY7mB1Aku4Qm
  • _mnkyzubopdpky8kavs5guowrmcyzf3y
  • v=spf1 include:spf-002e3701.pphosted.com include:spf-002e3702.pphosted.com include:spf-00975f01.pphosted.com ~all
  • 98Ps36RBU6ZoZcLR8Gh1sv9HkZBd5DetgduH9/yPUoyNDaCGmgKQ57cdqTH1RL7tG4VaJZIs9b0CoIiZYCtMMA==
  • MS=ms36045181
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Proofpoint

Leak Screenshot:

Leak Screenshot