Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.certifiedinfosec.com

Group: apt73

Discovered by ransomware.live: 2024-12-04

Estimated attack date: 2024-12-04

Country: US

Description:

Certified Information Security is a registered trade name for Certified Tech Trainers (CTT) (D-U-N-S# 010573009) (CAGE code: 3FKS0), a corporation ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 15

Third Party Employee Credentials: 0


External Attack Surface: 6



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • inbound-smtp.us-east-1.amazonaws.com.
TXT Records
  • v=spf1 +a +mx +ip4:103.72.76.172 +ip4:103.72.76.171 +ip4:69.48.183.134 +include:amazonses.com +include:transmail.net +include:zoho.com ~all
Cloud / SaaS Services Detected
Amazon SES/WorkMail Zoho Mail

Leak Screenshot:

Leak Screenshot