Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Discovered 2025-10-03 15:48 UTC
Est. attack date 2025-01-17
Country FR

Description:

[AI generated] Cartier is a renowned French luxury goods conglomerate that specializes in designing, manufacturing, and selling high-end jewelry and watches. Since its founding in 1847 by Louis-François Cartier in Paris, it has become globally recognized for its elegant, high-quality items, symbolizing prestige and opulence. It further diversifies into perfumes and accessories. Its products are adorned by many celebrities and royals.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 747

Third Party Employee Credentials: 19


External Attack Surface: 100


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • cartier.com-Adminanonymised.email
  • cartier.com-Techanonymised.email
  • cartier.com-Registrantanonymised.email
  • abusecomlaude.com
MX Records
  • mxa-00657601.gslb.pphosted.com. Proofpoint
  • mxb-00657601.gslb.pphosted.com. Proofpoint
TXT Records
  • CKO=cli_r5o5pjpy7kaebc4kjmverhrmom
  • 19ft3l6g3qb4fs4ce32u7gin67
  • ZOOM_verify_3uohEkWkQbGfJlcigYrG9Q
  • atlassian-domain-verification=cHGxdXjXiwmHGb8AkiY3urzZRgx2j8apB2KePqVClcbETPXL9Dboa0N2JvvWjDRr
  • Rmq18xHYHjBlAkJIKiGLRU5DK2cSzofclBqj1Y2fv3rqS0lMnJFwVl2fa7x4p01lpsQ4w7Rnltlw7Lg1UIgw1Q==
  • CKO=cli_bsf4xc2z2yiu5ijptlzyuzsf4e
  • amazonses:3Q7zvzXItzJWJ7IScYtx6rRoFDMUQmyMhKw4qHXB570=
  • docusign=18adadc6-b372-4fe0-8625-c326321b815c
  • nsng5mknmbpj1n356nk7rktp8q
  • google-site-verification=kO9VWTDaXLMHuy48BC2S95-se2snxslYBenqMzg6oEY
  • google-site-verification=kDIzTrKYq0S42VJmCVegwNPUJZ8giX-6zk6vrHoFdms
  • 9hvk80lxvjq8my24g2dm6pt3cwwcjn92
  • lcm9o89cv6rhhg7honaacp98du
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com -all
  • rXx8zvkxdXECOdnd0rpJ3MUoHN/5E7dRFzJWE4TS7xzki8zk9aEYgU9echSBOdvbezrKKC6IJkYkL6GdNbysnA==
  • 96igd86hehatj4elskda2c46o6
  • r4jijqinu86nt6d38qadnbpm4g
  • ko0gh5bldr7u9636qs8prrt1cb
  • google-site-verification=H2Drl4LPOBnJ_UMySOlO8veb4s5pJf2g48d_r6q4CBI
  • google-site-verification=ky3N-CvOy3XcFxrWviauXJ3ER14dk8xUq3Dhdm00U4E
  • 9hh319bdmxdytc1p0v48z8flzm16vfpl
  • CKO=cli_6i2gzthikl7urf424xf73mdgn4
  • monday-com-verification=q_rhxcCY0SRlI97YIuF99u9iWNtXYUQUA-bCuhnRbWI
  • rsat027e35885bj99tf2iu2qig
  • atlassian-domain-verification=33FRvutzuHNHB4hkP2g7LMbJHgPl5Oj1Jn4ayDoTRmI0jbZhZi1GPhFj9XDeYzBn
  • qs1q4yqnpp63bd0sgzbqck2q1k1tbdw6
  • _globalsign-domain-verification=9-9KbHvFgZ_xIodh7QxquDuEyF6be9iMSN9qMdCisC
  • bhqr72x9t87f73xjq7d84x2tz0dx7sgn
  • OOrwu4ZI_h5VXfUMszk_
Cloud / SaaS Services Detected
Atlassian Amazon SES/WorkMail Global Sign DocuSign Proofpoint Zoom

Leak Screenshot:

Leak Screenshot