Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Discovered 2026-04-22
Est. attack date 2026-04-21
Country US
City Wilmington

Description:

Incyte Corporation, a biopharmaceutical company, focuses on the discovery, development, and commercialization of various therapeutics in the United States. The company offers JAKAFI, a drug for the treatment of myelofibrosis and polycythemia vera cancers; and Iclusig, a kinase inhibitor to treat chronic myeloid leukemia and philadelphia-chromosome positive acute lymphoblastic leukemia. You have been given clear instructions, reach out to us before it's too late.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 4

Third Party Employee Credentials: 7


External Attack Surface: 11


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@cscglobal.com
MX Records
  • mxa-0018bb01.gslb.pphosted.com.
  • mxb-0018bb01.gslb.pphosted.com.
TXT Records
  • anthropic-domain-verification-t2hywb=7kbQAUaUCB97QVS58rFADEs2f
  • docusign=e8b29eb3-a7e2-4de7-bbd0-63beea726479
  • cisco-ci-domain-verification=182980025ce1c233196259c548c41793a406a8c370a512571c534abad8efeeb6
  • pexip-ms-tenant-domain-verification=74eb7d2d-79ef-475e-9850-8a014de0cd06
  • 9HqHVPiC1qiwUyqDx0SHBaJmwNCWkTYC0Lv4M1Q3N4I=
  • smartsheet-site-validation=x_QCdZscaNbGQdoAuwnfQJu8gqh2t6qM
  • bM28QlGcIP8KbJ39PQJfyPhgT4w6pjQav8ihD2iXG5cX5SvsczDbE6+AyOnKsmoMFRxlYatV1HyQPiNO6dKFSg==
  • c75e325ec7209da6eb55fe728cd857630cf5a119fdb9ccdf13
  • onetrust-domain-verification=d73acaf419c34244a81e0e3d7e7cc62b
  • docusign=80aba70b-daa5-47e9-b89a-dd673118d724
  • teamviewer-sso-verification=ba7cf8c07974451997a07a188bc149ee
  • openai-domain-verification=dv-nVbQf7NqBJ31uXc8KON1zqoR
  • globalsign-domain-verification=2YfQCnX8rqgkW6yz_QOCuufQj8xQeLVxcGy5es9Wvn
  • ZOOM_verify_bM4vrICIRTiM_k7KByVC3A
  • MS=ms48428741
  • apple-domain-verification=XCqHr7fNIAvwMxS4
  • incytecorp.azurewebsites.net
  • workplace-domain-verification=4eGJ6ZeEYuOCXSofTTKWp2GqQdVeR1
  • google-gws-recovery-domain-verification=70310521
  • v=spf1 include:spf-0018bb01.pphosted.com ~all
  • incytecorp-prod.azurewebsites.net
  • cursor-domain-verification-1g9bty=S0ppNXwu5S2SoHmyB4TbApVYU
  • perplexity-ai-domain-verification-gq90q2=Sn0UCtG6x8pyeAcvstD4BW7wM
Cloud / SaaS Services Detected
Apple Microsoft 365 Teamviewer Cisco OneTrust DocuSign Proofpoint Zoom

Leak Screenshot:

Leak Screenshot