Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

upland.k12.ca.us

upland.k12.ca.us

Group Safepay
Discovered 2026-07-24 21:59 UTC
Est. attack date 2026-07-24
Country US
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

The district provides comprehensive education from kindergarten through twelfth grade and operates 14 schools, including elementary, junior high, and high …

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 13

Third Party Employee Credentials: 90


External Attack Surface: 8


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • aspmx.l.google.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
  • alt3.aspmx.l.google.com. Google Workspace
  • alt4.aspmx.l.google.com. Google Workspace
TXT Records
  • apple-domain-verification=NcE6ceZjSGpQCdMS
  • MS=4EC27CF34ACEF20FF52EEC30C7EF2C051D96E967
  • Upland School District
  • 390 North Euclid Ave
  • Upland, CA 91786
  • v=spf1 ip4:163.150.228.252 include:spf.gaggle.net include:_spf.google.com include:amazonses.com-all
  • adobe-idp-site-verification=78496f78eee465e23032e4ca1b5b5663bb40db7707c7611f2c9b49434c7ac5c2
Cloud / SaaS Services Detected
Adobe Amazon SES/WorkMail Apple

Leak Screenshot:

Leak Screenshot