Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Goshen Central School District (gcsny.org)

gcsny.org

Group Fog
Discovered 2024-10-23 14:30 UTC
Est. attack date 2024-10-23
Country US

Description:

10 GB

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 1


External Attack Surface: 0


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • aspmx.l.google.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
  • aspmx2.googlemail.com. Google Workspace
  • aspmx3.googlemail.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
TXT Records
  • v=spf1 include:_spf.google.com ~all
  • ZA=KnTB2IyX5TEI4QZa0OAq5Q==
  • apple-domain-verification=ux8eSA6zB0agqdOK
  • duo_sso_verification=ODqoZ335sYZtNfUO6rGNRi8Nu3Esc2MwkZ6youWsaUnaagkSnQ4u4zQb4g3ejWVH
  • w5ql938x6b4lt1hg9fkkvmcqzsx0nfnl
  • _x7neqqcgg3owa446dzkst2pro453hxo
  • MS=56CBA5107BB0AD3DC2BD29F37FA5C1335D887AD3
  • adobe-idp-site-verification=0fb8493107c9860c644ca40ba2b4c5e625620d1e4b35bcdc5430441abffa7b89
Cloud / SaaS Services Detected
Adobe Apple Cisco Duo

Leak Screenshot:

Leak Screenshot