Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

lapostemobile.fr

lapostemobile.fr

Discovered 2023-12-20 10:42 UTC
Est. attack date 2023-08-28
Country FR
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

PosteMobile S.p.A. — итальянскаятелекоммуникационная компания,принадлежащая Poste Italiane S.p.A.которая работает в секторе мобильнойтелефонии в качестве операторамобильной виртуальной сети (Full MVNO)в сети Wind, а с 2018 года такжепредлагает фиксированную телефоннуюсвязь и интернет-услуги.

Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 7873

Third Party Employee Credentials: 4


External Attack Surface: 73


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrarnameshield.net
  • contact.ndilaposte.fr
MX Records
  • lapostemobile-fr.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=-Mgg2BSvgRkcpMzgz1zM2BtognoYXTddY1h_8UigUtA
  • atlassian-domain-verification=8cTJ1zBLzKE7+/VaG9j1V6FRKqmdyjfzpvSDfb+r3NXtTRRwawsYiZREuuCKhITi
  • v=spf1 ip4:54.171.87.146 ip4:77.158.14.24 ip4:37.65.236.140 include:spf.protection.outlook.com -all
  • MS=ms72772788.
Cloud / SaaS Services Detected
Atlassian Microsoft 365

Leak Screenshot:

Leak Screenshot