Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hy-vee.com

Group: stormous

Discovered by ransomware.live: 2025-06-23

Estimated attack date: 2025-06-23

Country: US

Description:

Access to Hy-Vee’s environment was obtained through compromised Atlassian accounts, including tools such as Confluence and Jira. Internal documents, infrastructure diagrams, employee data, training materials, and technical information related to several operational systems were extracted. These include:


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 99

Compromised Users: 3297

Third Party Employee Credentials: 4


External Attack Surface: 98


Infostealer Distribution

Leak Screenshot:

Leak Screenshot