Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo mgfsourcing.com

Group: apt73

Discovered by ransomware.live: 2024-10-24

Estimated attack date: 2024-10-23

Country: US

Description:

MGF Sourcing is an independent US-led global sourcing company founded in 1970. We focus on US-based specialty apparel retailers and, with our stron...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 8

Compromised Users: 17

Third Party Employee Credentials: 3


External Attack Surface: 5



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • cluster6.us.messagelabs.com.
  • cluster6a.us.messagelabs.com.
TXT Records
  • _a4vwi2lm1m8hlj1ej9e86icwzo842h9
  • smartsheet-site-validation=YuE-He6j_yJxs380iJK1qIFQ9gpktxBA
  • v=spf1 mx include:spf.protection.outlook.com include:spf.messagelabs.com include:_spf-dc4.successfactors.com include:_spf-dc4.sapsf.com include:relay.bswift.com ip4:202.83.206.100 ip4:23.98.39.85 ip4:65.52.161.95 ip4:175.45.49.35 ip4:175.45.49.36 ip4:65.6" "2.173.47 ip4:70.42.227.151 ip4:70.42.227.152 ip4:20.1.128.197 ip4:20.10.24.226 ip4:20.96.12.43 ip4:20.1.130.13 -all
  • successfactors-site-verification=ZGZlY2M0N2NjNDVjYjllNWExMDU3NjI5ZjQ0NWIzZGM3MmJlOWYzMTY4OGU1OTZiMWJkM2RmYmFjNTk4ZjEzOQ==
  • atlassian-domain-verification=WBYIl2j0Mp3hvA/v0GwN1FPAsQPxxkKI2rpDMSOS32fDLhwsKVgfRvIRmVL6A/Pm
  • MS=ms83449377
  • ktD2jfSR8L4v14AonLnrOmDCMX1iRCzEDJkZWluA7SqQdZd2bl8XqwhqkIK763B9jkFUaRFQu9aYRPTx6LWzsA==
Cloud / SaaS Services Detected
Atlassian Microsoft 365

Leak Screenshot:

Leak Screenshot