Discovered
2023-10-16
Est. attack date
2023-10-16
Country
Description:
Baccarat (Paris, Euronext, BCRA) is a market-leading designer, manufacturer and retailer of luxury crystal products. Since its foundation in 1764, the company, whose manufacturing base is in Baccarat in the Lorraine region of Eastern France, has been synonymous with a unique savoir-faire and has come to symbolize an inimitable French Art de Vivre. For 250 years, the brand has inspired leading designers from across the world. Ranging from iconic lighting to unique tableware and decorative objects, fine jewellery and tailor-made flacons, the brand’s products and tradition of excellence are widely distributed around the globe.SITE: www.baccarat.com Address 20 Rue Des Cristalleries Baccarat, Grand-Est 54120, France
Infostealer activity detected by HudsonRock
Compromised Employees: 3
Compromised Users: 7
Third Party Employee Credentials: 1
External Attack Surface:
5
DNS Records:
The following DNS records were found for the victim's domain.
- domain-admin@baccarat.info
- afnic@meyer-partenaires.com
- dns@meyer-partenaires.com
- baccarat-fr.mail.protection.outlook.com.
- v=spf1 a mx a:production.emea.baccaratdirect.demandware.net include:spf.mailjet.com include:spfa.alinto.net include:spf.protection.outlook.com include:spf-eu.letsignit.com include:_spf.salesforce.com -all
- MS=ms47167079
- docusign=6f3b7199-94d4-4564-b0d8-8229d5b335ed
- google-site-verification=lts7JCw0B3sOfq8RflTdZf3r6Lm2oHeLHKKWZkNlPG8
- facebook-domain-verification=nclz5ciolephiphahmc4fna55ra24o
- infor-cloudsuite-domain-verification=X2Z3K5ZX63PATAX6J5WDTPC4XFP5FHJLTBTVPHWGUTJR6LTYDMJYJYHMKR52V9GW
- google-site-verification=CNZPqh6Jc5jFe5wzmkrAOmoei4dUIRla0Ffm66_hLRI
- 8nXnLQi1F/6U/sjOLnWjrOdn0eFMFMjHgVPfsjrW9UA=
- SFMC-2IL922QvTcvYgIG70LAzd01FXryiXm3N426gWK4Q
- 1password-site-verification=3CPTJKBDRFFKDGAUSLTHTVVYRY
Cloud / SaaS Services Detected
Microsoft 365
Salesforce
Mailjet
DocuSign
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.