Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

studentclearinghouse.org

studentclearinghouse.org

Group Clop
Discovered 2023-06-14 20:19 UTC
Est. attack date 2023-06-14

Description:

National Student Clearinghouse

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 2548

Third Party Employee Credentials: 3


External Attack Surface: 101


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 4754f405143db5541153d20e240de6d3175bfc48c9a21a2420efed66059cb74astudentclearinghouse.org.whoisproxy.org
  • 4754f405143db5541153d20e240de6d355fc412469b05a650614bc352879cd91studentclearinghouse.org.whoisproxy.org
  • trustandsafetysupport.aws.com
  • 4754f405143db5541153d20e240de6d3b63306bfe9710152306074240dd49783studentclearinghouse.org.whoisproxy.org
  • 4754f405143db5541153d20e240de6d3e70245994eb141cf74aa4c39b6f0c953studentclearinghouse.org.whoisproxy.org
MX Records
  • studentclearinghouse-org.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=1HiMb8J1r82lIszno8n-BkfzFXlxNi4miiQvvwrFNeo
  • ZOOM_verify_CWBSOPB2NnPie70Kx5C3n1
  • anthropic-domain-verification-7xpx8c=9SRVBBEDudx6BsXBfMXwoME5s
  • infoblox-domain-mastery=54a62c87b31bc6e49bc7cbbff469d38bf00025a9c820ff86b8911f7c9a2cd3e667
  • pardot_310171_*=f37886f6498ac251a78c4cc7ae78feb05ee664edcee5f1b14f47826b5dbb5023
  • pardot_310171_*=0fa4be8dfb26f8487fd41432bbfa7e808af9c807b01e519975775cf82efb4d60
  • AiZpDm67jkgCfYpPyRemvESexe1tLBi9iA2VMGbKGdqMfX7vEdc72Mk7Jgnh8sA28PFoLYLCrtZ32weSXafd6A==
  • ciscocidomainverification=49e945573e83e63f5e6fa32d16ae61e84f00f87a9e51328b4196bfd17162e7ac
  • v=spf1 mx include:docebosaas.com include:_spf.smtp.com include:spf0.studentclearinghouse.org -all
  • intacct-esk=67406D2A73CA4A69E053AA06A8C0E3A6
  • google-site-verification=zFWjOfR8kDwgngkmXLxfNDlywYdGfTv97X8tsdCAUbw
  • oci-domain-verification=l8Udj8wgmtgU7Hdpl9sbJjGL5Misa17jzcjgdUfxAl
  • google-site-verification=6iz7v7igTJFyXTa045GJGVsveve3xts2_TkTht8xRpk
  • box-domain-verification=10c37de98d8d9f1c5fd37218ae5aeac2fc7c7aa9e0415457d83646385b8005b2
  • \"pardot_310171_*=adbd94cefa1920277a3df23c4bc17edb8aff4643ed16b8bd667da3c1d49979e9
  • 14ff7c170056429a94589307f87b5824
  • atlassian-domain-verification=kO0aFLDNjNssnXW8OJKTaqm7Ds5Zma5H5U4s3gaYUcatUicRV5KrNVfVP7mBAUDy
Cloud / SaaS Services Detected
Atlassian Box Anthropic Sage Zoom

Leak Screenshot:

Leak Screenshot