Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Anubis
Discovered 2026-04-21 03:50 UTC
Est. attack date 2026-04-21
Country US

Description:

Large-scale data breach at a care provider for seriously ill patients.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 5


External Attack Surface: 3


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • us-smtp-inbound-1.mimecast.com. Mimecast
  • us-smtp-inbound-2.mimecast.com. Mimecast
TXT Records
  • docusign=ccc13aa1-fe6f-47fd-973f-4982be0e4f7e
  • nordpass-domain-verification=4a1bc52adbdec71958e162e802c6cae7446bb4ff3d6ad44ac66abb67ac93f73e
  • v=spf1 ip4:209.143.86.82 include:us._netblocks.mimecast.com \010 include:aspmx.pardot.com include:_spf.salesforce.com\010 ~all
  • UZaxcMOmxm3sYf37UOO73RQMhgkCalQIqYQZ3aiRnx3fQ7YwARJE1yt0P3zRTc9n6HMwWQmvedtErjn5SKoDJQ==
  • ZOOM_verify_6QlZcw1cSliX0kT8DaoNaA
  • _globalsign-domain-verification=Q7Tb8h9Qns7NMkB4lPiXIxhFU9hlpoi0v2x2RaWU_V
  • apple-domain-verification=mycrtV7QUQEos8Qd
  • canva-site-verification=wJ4xEctKBSFbC56xf6Codw
Cloud / SaaS Services Detected
Apple Global Sign Salesforce Mimecast DocuSign Zoom

Leak Screenshot:

Leak Screenshot