Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

tu-ilmenau.de

tu-ilmenau.de

Discovered 2024-05-07
Est. attack date 2024-03-07
Country DE

Description:

Eine moderne, zukunftsfähige Universität benötigt einen internationalen Campus mit einem weltoffenen Umfeld, in dem Menschen in ihrer Vielfalt akzeptiert werden und Grundrechte sowie Wissenschaftsfreiheit nicht in Frage gestellt werden.

Infostealer activity detected by HudsonRock

Compromised Employees: 67

Compromised Users: 859

Third Party Employee Credentials: 100


External Attack Surface: 36


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • c2221.mx.srv.dfn.de.
  • b2221.mx.srv.dfn.de.
  • a2221.mx.srv.dfn.de.
  • mail.tu-ilmenau.de.
  • mail-router2.rz.tu-ilmenau.de.
  • mail-router1.rz.tu-ilmenau.de.
TXT Records
  • google-site-verification=G-Jxch177DdGmTe-xe9qxoWlsJTamlIMaoGhAfm3W-c
  • v=spf1 ip4:141.24.0.0/16 ip6:2001:638:904::/48 mx include:gbv.de -all
  • adobe-idp-site-verification=7d871a98ab167d376db08c29f1a70063739f85f3a970df38e77380cedabb569d
  • cisco-ci-domain-verification=74d908dff728ba14a7326912a0ef7dcb58fd87c4ac2804552547420913f66a29
  • autodesk-domain-verification=dS6MS6XHof-zKh9xZSw1
  • MS=ms53291016
  • atlassian-domain-verification=8FyrEAzFUrTUxxtoeU7Zw9MIAoqLLwyKUK80xTFJ48tOau0q36ipYVVak94VEh5c
Cloud / SaaS Services Detected
Adobe Atlassian Microsoft 365 Autodesk Cisco

Leak Screenshot:

Leak Screenshot