Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Nordstrom Rack

nordstromrack.com

Group Tengu
Discovered 2026-01-15 02:49 UTC
Est. attack date 2026-01-15
Country US

Description:

Nordstrom Rack is a company that operates in the Apparel & Accessories Retail industry. It employs 1to4 people and has 500Kto1M of revenue. The company is headquartered in San Jose, California

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 6502

Third Party Employee Credentials: 1


External Attack Surface: 101


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaintsmarkmonitor.com
  • whoisrequestmarkmonitor.com
MX Records
  • mxa-00411f01.gslb.pphosted.com. Proofpoint
  • mxb-00411f01.gslb.pphosted.com. Proofpoint
TXT Records
  • facebook-domain-verification=prv7t0rppu2edw1wmfr7xdlv56l3je
  • google-site-verification=dWOJxR9qIgdQ8Jq-tK2ok9KNX__op27vVH05n2uB4iM
  • google-site-verification=mqxAtEx2OSfQjT25cEU076tHLG-JbQ9c9DIqhZb4xNI
  • google-site-verification=DizUSIijxjUwYREWZQGJ3rbzaNgmRWV8hd751zVjggM
  • v=spf1 mx a ip4:69.169.43.16 -all
Cloud / SaaS Services Detected
Proofpoint

Leak Screenshot:

Leak Screenshot