Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo pnp.co.za

Group: Apt73

Discovered by ransomware.live: 2025-01-09

Estimated attack date: 2025-01-09

Country: ZA

Description:

Pick n Pay Group Ltd. is a South African retailer. It operates three brands – Pick n Pay, Boxer...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 11

Compromised Users: 7150

Third Party Employee Credentials: 97


External Attack Surface: 107



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse lexsynergy.com
MX Records
  • pnp-co-za.mail.protection.outlook.com.
TXT Records
  • jeEG9XSwBiIslzW0w99VY4bH9n2irh8MM7V4IlM6duS1h6yxNWJrOfdg1h9x3niZwjQniT1ZxG5gJyjuul1CcQ==
  • v=spf1 ip4:196.33.17.160 ip4:196.33.17.161 ip4:196.33.17.162 ip4:196.6.242.160/27 include:spf.protection.outlook.com -all
  • Dynatrace-site-verification=54985660-bf6a-4640-a4cf-8ef104f4372e__gq3a1qdmipal1i1dfnvq6lqkve
  • MS=ms56129642
  • apple-domain-verification=1K0BSLCEIxwkl4cs
  • apple-domain-verification=fTUnBbwFVGCbt2Vu
  • cisco-ci-domain-verification=47f489000d078dc1b4affee5bfefa1c4be2a9274496d643aad637c9a19efdd03
  • google-site-verification=Wn9F1jo-PfsQIGsxU1kVQFTufsvP_A1xr995_kjtxnI
  • jamf-site-verification=nMN2ytFbLh1gZBJaHb1Fcg
Cloud / SaaS Services Detected
Apple Microsoft 365 JamF Cisco

Leak Screenshot:

Leak Screenshot