Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

unyleya.edu.br

unyleya.edu.br

Discovered 2025-07-08
Est. attack date 2025-07-08
Country BR
Ransom $10,000

Description:

Unyleya is an educational group that has been developing technological solutions to offer quality education to thousands of students seeking qualification and professional development for over 18 years. It is known for being a pioneer in digital education, offering a wide variety of undergraduate and postgraduate courses in Brazil. Invoices, contracts, users, assignments and more was stolen.

Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 6368

Third Party Employee Credentials: 42


External Attack Surface: 96


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • unyleya-edu-br.mail.protection.outlook.com.
TXT Records
  • cuh7toi467mm01g9e3qtc4a0ek
  • google-site-verification=7OaBSlGYuxT_XTPjFeO4VWDU4u8KikXaJch12hLhQkM
  • ip4:52.2.218.144
  • ip4:54.207.32.202
  • ip4:54.207.91.194
  • ip4:54.94.222.134
  • ohil2n1jujmo8bvpo0aff2j8e7
  • v=spf1 include:unyspf.unyleya.edu.br include:unyspf.unyleya.com.br mx include:emsd1.com include:spf.protection.outlook.com include:amazonses.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail