Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo sk.com

Group: qilin

Discovered by ransomware.live: 2025-04-10

Estimated attack date: 2025-04-10

Country: KR

Description:

Over 1 TB of files downloaded from their servers . Company has 48 hours to contact us before we publish the data . In the U.S., SK is investing in businesses and expanding our local operations in electric vehicle batteries, life sciences, tec ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 107

Compromised Users: 136

Third Party Employee Credentials: 341


External Attack Surface: 73


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • spmail.sk.com.
TXT Records
  • 70fdcbd3a83713e68bec7d97fbc02a8c2da1bae51a89620fa741e1f3544a6a51
  • MS=ms68865205
  • v=spf1 include:spf-sh-mnc-s.sk.com include:spf-ens-gas.sk.com include:spf-e.sk.com include:spf-t-wh.sk.com include:spf-cc.sk.com include:spf-ec.sk.com include:spf-b.sk.com include:spf-n.sk.com include:spf-chem.sk.com include:spf-sk.sk.com ~all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot