Group:
Blacksuit
Discovered by ransomware.live: 2024-08-26
Estimated attack date:
2024-08-26
Country:
Description:
Widex is a global hearing aid manufacturer known for its innovative technology and high-quality products. Founded in Denmark in 1956, the company focuses on delivering natural sound and advanced hearing solutions. Widex emphasizes user-friendly designs and cutting-edge digital sound processing. The company is part of WS Audiology, serving users in over 100 countries with a commitment to improving hearing health.
Infostealer activity detected by HudsonRock
Compromised Employees: 3
Compromised Users: 10
Third Party Employee Credentials: 11
External Attack Surface:
8
DNS Records:
The following DNS records were found for the victim's domain.
- domain-abuse@internetx.com
- widex-com.mail.eo.outlook.com.
- v=spf1 ip4:213.83.147.102 ip4:63.143.57.128/25 ip4:198.61.254.57 ip4:82.199.133.149 ip4:82.199.133.148 include:spf.protection.outlook.com include:_spf.presscloud.com include:_spf.concurcompleat.com include:spf.power365.binarytree.com " "include:spf.dynect.net include:_spf.messagegears.net include:_spf.eu.messagegears.net include:sendgrid.net -all
- atlassian-domain-verification=Um0nmnUs2/3WfPm2Nj19qkhc20KtcteECFsjVwpXsEw0GKdvWwFC5Muh3CUSg1ft
- 2ZA4UHzPQzM6UMGqgKADBvycGFtd+pneon5zCK5gzue/b7ZTQGkS7rGTamPVMOwN+CZpX2iZZf1bMnzfi28jrQ==
- _0i92ag8eim0lukpku100whvdb6th9bx
- _x82be1pgmk92afypbnh8lxt8xxmris2
- google-site-verification=NrNQA2YmAuHOpw6tmxbNXqYJa8Y6yA2btO9ng6fc9oA
- _exln67igaorei3szu1bya2xl4ltvs9i
- _5gt9wpfnje8i9hrbsb5ywgo13aok0hv
- k9akkjb9f626j7qu6gj7t7t8kd
- wsa-we-prod-sitecore-wsapublic-rg-cd.azurewebsites.net
- _xapkdf0anh8upvhe5byglf7h0b1c63w
- z8s98tklnpww34cv1h1fnzx1mp49mdzd
- apple-domain-verification=zOOgdtjv0SbqC4uZ
- _a2uylgxni5po4wvs1bf2g5bk6xfod6s
- _61hgs0m5bgs9yjbqm0sts6rw709mqia
- SFMC-i03AWrW5Pym9uK63bmRp58U1xwqd0dPU0cqcYqnz
- _60a24tzxxic4glmbhik6k8xujvu8777
- facebook-domain-verification=fudvj2lo7v2gm9qdhzh26h67eoelgc
- _6cfb3sij6dzxo70moh7ntnrdcuvzt0w
- _5x47bov8gifymddbvkgpydmuflznxjl
Cloud / SaaS Services Detected
Apple
Atlassian
SendGrid
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.