Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Tyson Foods

tyson.com

Group Snatch
Discovered 2023-11-29 10:01 UTC
Est. attack date 2023-11-24

Description:

We built our name on providing generations of families with wholesome, great-tasting chicken. But today’s Tyson Foods is so much more. As values and behaviors around food have changed, so have we. Today, we’re innovators uniquely positioned to reshape what it means to feed our

Infostealer activity detected by HudsonRock

Compromised Employees: 88

Compromised Users: 156

Third Party Employee Credentials: 45


External Attack Surface: 128


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • hostmastersafenames.net
  • abusesafenames.net
  • meaqahgbimcaidp.email
MX Records
  • mxb-00003402.gslb.pphosted.com. Proofpoint
  • mxa-00003402.gslb.pphosted.com. Proofpoint
TXT Records
  • atlassian-domain-verification=GVzGQ3pMaGo9iSFhViLL45MMDK9TiI3BFkQa1sUOfUWVoUZcpf7ZMFhcavgxHr1w
  • adobe-idp-site-verification=10848dc5-25f4-48d5-97a0-eb9b47203d18
  • anthropic-domain-verification-7nx578=lySknOmgE8W9RtfTTDnBrbudN
  • infoblox-domain-mastery=f485eafbd21b001c9dfade218a4303109cad04b98788aef9d5b162ba8f284ac2c9
  • google-site-verification=8S1XYPEvDJv3R7yAtVEYYyn3NliKEAhTpkYjqkBt9j0
  • amazonses:I93cDEkicxY1W3j+XAE+l9P1T4rZJOKgQMd69U7J1jQ=
  • e2ma-verification=sob4
  • aopF/9kFNizryTW/Nzqpkj+V9BlQsdR7K/EhKncbWSHuD/K/LWoy6PlFCiiUywFt7L0ikAOxvtZPfF3jaAVBpw==
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com include:_spf.salesforce.com ~all
  • MS=ms96152422
  • fd962b2f59cc4142bdf2eb6516c0cbe6
  • flexera-domain-verification-aoxxdzdpwwlqabra
  • amazonses:WW5SmMwe/Lu/l7Yn6DtvH1nm/V/DyA4ABEKN+BJzrJ4=
  • atlassian-domain-verification=zkh1rHLCi6Wtd1bUvC3iWPjr5nOozurbNzy6sWBk1IVb3saQC1Jzj2gV47vrc1nt
  • amazonses:8agNxId3+Xe1Margyv8YOKlJWPwURLXUuXRxTjk35uE=
  • c193f3d886524745ad9d4d4c55096a83
  • atlassian-sending-domain-verification=ae688689-4bd0-4d14-af41-fc14f6a9e7ba
  • cisco-ci-domain-verification=51580d17b3fc7cdf054233478012bb028b73f245efe5efb2cf0daf314a64eb1a
  • figma-domain-verification=658a51bad6e0159b75a55170b9fe12ab1e99d2793eef85a126febed2e981b33c-1746630783
  • loop-domain-verification-w4dmkk=xT6Q8beJGvC6fiAf7WToMLb8w
  • adobe-idp-site-verification=0886b75ef61eb5dcad10b63118bcb8b444cbd545fcb7abfe2fe4d78911410944
  • 26db00ca2de14520b4749ffbce4250cc
  • smartsheet-site-validation=HAdlqnNuVRaM6LZ9AugVieNUA2_6Lngi
  • atlassian-domain-verification=Kx6og++ricdkVixx88bY4P/IJME4RFqJLWqP7bUvsRakXJ5zG5HTRqMWKIqiJhLo
  • tysonsitecore-cd.azurewebsites.net
  • facebook-domain-verification=g4hvkfchn457jm1vqh5pslsyjoyy0d
  • apple-domain-verification=QlbP5Bkl9muZ85Bq
  • autodesk-domain-verification=cDYDdjZ8zzCVtECYbbBl
Cloud / SaaS Services Detected
Adobe Apple Atlassian Amazon SES/WorkMail Microsoft 365 Salesforce Anthropic Autodesk Flexera Cisco Proofpoint

Leak Screenshot:

Leak Screenshot