Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

DAVIDYURMAN.COM

DAVIDYURMAN.COM

Group Clop
Discovered 2025-10-27
Est. attack date 2025-10-27
Country US

Description:

[AI generated] DAVIDYURMAN.COM is the official online store for the luxury jewelry and timepiece brand, David Yurman. Founded by David and Sybil Yurman in 1980 in New York, the brand is recognized for its signature designs that blend art, fashion, and jewelry innovation. On the website, customers can purchase earrings, necklaces, rings, bracelets, watches, as well as wedding and gift collections for both men and women.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 73

Third Party Employee Credentials: 5


External Attack Surface: 20


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • davidyurman-com.mail.protection.outlook.com.
TXT Records
  • apple-domain-verification=sllYM2EGg53Q39uH
  • jamf-site-verification=M-RNDZZaVoxyWpcJEamNkw
  • _ruvhjn3rc0m5bq7sk8xf738alakdswx
  • autodesk-domain-verification=qrw3T1rFZ8FUu3EX4ErF
  • duo_sso_verification=jQUM8bmEh1TDoEqmJeIqOuaG5udKqVpQVpvO5BNmt9qNJITcMsNWS8cdYgthE7pQ
  • adobe-idp-site-verification=368bf88ed3d6d197e13ddeee73a10f50b107b9c72fa23143acd92df1aeda61a2
  • sfcc_verification_bgcl=7ce0961563e9adb4b116d53ff9a56ce2821165a47fa7a2ac7a21a607ffa7ea78
  • liSfZFPUeKWHpFtesLv+jmozbFbpumvcNUvzA7Fo7gEOZcDT7ps/LUmHXswDWS+OjlZ1COr7Qs/KWyeoboHD2Q==
  • openai-domain-verification=dv-WDZJmDnmd8v8157n5L47rVjB
  • google-site-verification=qty0P-W-hwcbubJYbYqD2M9MhZYYXMRgU0C0OaooaD4
  • atlassian-domain-verification=aHT9WZuzv15vqybsyK3yWDZsa6i2QMLZMdAcAXvpD9bcAF61AwEdoiXGx4f7aGhL
  • MS=B8CD68845070830107B0B3906F8989F739659F5C
  • v=spf1 include:spf.protection.outlook.com include:rp.oracleemaildelivery.com include:docebosaas.com include:_spf.psm.knowbe4.com include:_spf.sparkpostmail.com include:_spf.salesforce.com ip4:69.167.187.66 ip4:44.195.168.199 ip4:150.136.207.87 ip4:3.21" "4.237.244 ip4:52.0.34.11 ip4:147.154.47.100 ip4:130.35.17.145 ip4:130.35.17.146 ip4:44.207.94.1 ip4:44.195.168.199 ip4:150.136.129.32 ip4:107.20.250.166 ip4:160.1.157.146 ip4:52.61.135.176 ip4:51.254.5.30 -all
  • facebook-domain-verification=y6jt3msj2wosh8z9tutbov39vg7lsn
Cloud / SaaS Services Detected
Adobe Apple Atlassian Salesforce Autodesk JamF KnowBe4 Cisco Duo

Leak Screenshot:

Leak Screenshot