Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Qantas Airways

qantas.com

Discovered 2025-10-03 15:50 UTC
Est. attack date 2025-06-28
Country AU

Description:

[AI generated] Qantas Airways, an Australian-based airline, is indeed one of the oldest in the world, having been founded in 1920. Known for its excellent service, the company offers both international and domestic routes, with a reputation for safety and comfort. Qantas operates a mix of short, medium, and long-haul flights, and is part of the OneWorld airline alliance.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 4809

Third Party Employee Credentials: 6


External Attack Surface: 100


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • infodomain-contact.org
  • abusereportkey-systems.net
  • abusekey-systems.net
MX Records
  • mxa-0032b601.gslb.pphosted.com. Proofpoint
  • mxb-0032b601.gslb.pphosted.com. Proofpoint
TXT Records
  • MS=ms47663611
  • facebook-domain-verification=xrd7ge1w080153w7e14axuajxao4cu
  • amazonses:Cle+CVItVHvlrEwsaWVVA7Bi8+CNeRpAZd1hsYUkP2A=
  • 2mkj7k171flnbqwrb7ggj97xk6514f2m
  • _sm9cn70yr6zoy24pm13m318536h1kh3
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com -all
  • amazonses:7c5XzDdkPPAiTNYs2KFkFjTW2kdomaS2vrek0REZnzo=
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Proofpoint

Leak Screenshot:

Leak Screenshot