Group:
Lockbit3
Discovered by ransomware.live: 2023-10-31
Estimated attack date:
2023-10-31
Country:
Description:
Río Hondo College is an educational and community partner committed to advancing social justice and equity as an antiracist institution that collectively invests in all students’ academic and career pathways that lead to attainment of degree, certifi...
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 483
Third Party Employee Credentials: 57
External Attack Surface:
100
DNS Records:
The following DNS records were found for the victim's domain.
- riohondo-edu.mail.protection.outlook.com.
- google-site-verification=JVi84N5EWvfKtBsKG3NO9EYCCC7F2wiMTFWTnrrOOMU
- adeptat-domain-verification=h7rGxzRSMw6DmwYZFQI4hWKL7cy-qPheI1d9ThS7
- jamf-site-verification=87zyR9R9RHeE_s0kP1An2A
- ZOOM_verify_WLAqk6mvGiUS8QFvylQgdX
- ZOOM_verify_1b9xGPItm6LknfXRagg3sp
- v=spf1 include:_spf.smtp.com include:spf.protection.outlook.com include:verifymyfafsa.com include:_spf.qualtrics.com include:turbo-smtp.com include:amazonses.com ip4:216.17.93.137 ip4:207.233.58.42 ip4:74.122.104.0/22 ~all
- MS=03BA644A984506610AA196ABC8EF232CBB5954DA
- MS=4297E5B74077F1AB9A81C5A5E09733786638E6A3
- adobe-idp-site-verification=1e44253b885b335230728f69161e130b4447d9a06c363575c64d1b762ad4698f
- include:listserv.cccnext.net
- pZAz681DTT7mhC/8M3sy1oybX1xvVENyRkjZvLMW3Ks6Dr/10hp9JS80uUUIlcK60DAl/yk5/Wu3h+xoCU/Y7g==
- amazonses:PoegqDblZjQEXiPnnJtHuNma7W9B7v2r7tnV2eT6o5U=
- apple-domain-verification=BN7vtxjuDY8zfZZv
- cisco-ci-domain-verification=5124cc24deed2be1f16b7bb20a5ef5adfe04b25e73184baef04f4c1c7766548b
Cloud / SaaS Services Detected
Adobe
Apple
Amazon SES/WorkMail
JamF
Cisco
Zoom
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.