Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Due to abuse of the free use of Ransomware.live, we have updated our Terms & Conditions. Please review them before continuing to use the Data.
Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

southernwater.co.uk

southernwater.co.uk

Discovered 2024-01-22 17:57 UTC
Est. attack date 2024-01-22
Country GB
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

We provide water for life to enhance health and wellbeing, protect and improve the environment and sustain the economy. We provide essential water services to 2.5 million customers and wastewater services to more than 4.7 million customers across Sussex, Kent, Hampshire and the Isle of Wight.SITE: www.southernwater.co.uk Address : Southern Water Services Limited, Southern House, Yeoman Road, Worthing, West Sussex, BN13 3NX.ALL DATA SITE: 750gb 1. Users personal documents and folders 2. Corporate documents and etc…

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 602

Third Party Employee Credentials: 2


External Attack Surface: 19


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • southernwater-co-uk.mail.protection.outlook.com. Microsoft 365
TXT Records
  • msfpkey=70f3pzvonb90ax9yjz0n54z6n
  • apple-domain-verification=X0dqZKP8e8PY2emU
  • 00D8d00000213PS=1TBPz00000002zX
  • msfpkey=457bfy96a3j3vja6zn3y0reps
  • google-site-verification=DEveQASKNhLpr-xTFzbsY9Yq1AJ29LxVV9W5-8VuKrk
  • 00DKM000000GyfH=1TBUF00000005R8
  • adobe-idp-site-verification=1e70fbbe28d8f27e1654eddb81960894cf4c2f76fc70b1f735d19547de8f2a54
  • zMZ5nOFpz6CwLoIK2iQOpHeJubMMUFZleduzn0oL1o0f3wvtEaL8HzQ3FyQfCdM5Vsxx9lIZx9bO8seLRfN7uA==
  • nT+YaSNU0gpeu5q++4Vk2xgfquXk9Ag9FTKDdPcJZoHLQzf1Q5LIiE1PBECy7TdxdKpDRyw2uwlpDtWfh/8Esw==
  • docusign=174a8273-b605-4320-8a72-41d8be5a6ba5
  • v=spf1 ip4:185.59.76.218 ip4:185.59.78.218 include:spf.protection.outlook.com -all
  • google-site-verification=iJ1AvrXm-g79wbHRq7VyLkQT89swDiAHCGPRBrn6lFQ
  • docusign=e14f60c9-3830-4bb4-9b58-46ed71dfe32d
  • MS=ms72948311
  • miro-verification=eeff1dda298f8de9273f2f4bb281b1e9b429b5d8
  • atlassian-domain-verification=b6Wby2wqaSVYDPQ5WqIuOv/rSdV6hEFB6W4ZKU2fp6IhOhh6/EqwFzDYfTjB5E2r
  • xlHzlRis7Los31WljYDspR7DgVb0mEouXYUGV0L0fEbVSEH1aqtVxtI48ou8pOu1S5K2zeOXK4iCYS4O5oU+cQ==
Cloud / SaaS Services Detected
Adobe Apple Atlassian DocuSign Microsoft 365 Miro

Leak Screenshot:

Leak Screenshot