Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

City of Aurora

auroragov.org

Group Medusa
Discovered 2025-03-01 20:27 UTC
Est. attack date 2025-02-26
Country US

Description:

Aurora is a home rule city located in Arapahoe, Adams, and Douglas counties, Colorado, United States. The city's population was 386,261 at the 2020 United States census with 336,035 residing in Arapahoe County, 47,720 residing in Adams County, and 2,506 residing in Douglas County. City of Aurora corporate office is located in 15151 E Alameda Pkwy Ste 4600, Aurora, Colorado, 80012, United States

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 58

Third Party Employee Credentials: 2


External Attack Surface: 45


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abusecloudflare.com
MX Records
  • mxb-00348d01.gslb.pphosted.com. Proofpoint
  • mxa-00348d01.gslb.pphosted.com. Proofpoint
TXT Records
  • autodesk-domain-verification=mffPPStjvWqSMqBjcMj3
  • bluebeam-verification=xozh3c1qt82n00mpnc11k51syo6dw6
  • bw=E7L6Bq56JKHVIEr7KrAHWKHJX1InLzl1z21O56H4ONSs
  • facebook-domain-verification=1umjhsj4gcrtz9comuoxa0c7aycii7
  • google-site-verification=J7U9D1FPEcQk9-4z33sB7bsZ1Zwl8tmfVyf8g9VPmmQ
  • s7ang64i7vv65h1as2tgijsotn
  • smartsheet-site-validation=PC4aqO19yNkXNpY7BOiI-3gvVua33Cj7
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com include:mailgun.org include:smtp.iii.com ~all
  • 2hgactnidvmed2utkcp8fdr11g
  • MS=ms90274959
  • MoxJ/jnxBmTcART/h0gVw5MzVWQTmmkHt9Kyg85WLfQiCV8ouUzlvIqeyA/H1ATlKxIuqt6pTLvTEmfw94ogeQ==
  • adobe-idp-site-verification=7d0eba0240b79e5408c2a2b3e0a9dc47f402810fd5d0e911c9b144ae9670db63
Cloud / SaaS Services Detected
Adobe Microsoft 365 Autodesk Mailgun Proofpoint

Leak Screenshot:

Leak Screenshot