Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

www.metlife.com

metlife.com

Discovered 2024-12-31 07:15 UTC
Est. attack date 2024-12-30
Country US

Description:

[AI generated] MetLife is a leading global provider of insurance, annuities, and employee benefit programs. Established in 1868, it offers life, dental, disability, and accident insurance to individuals and groups. Headquartered in New York City, MetLife operates in over 40 countries, serving millions of customers. It focuses on delivering innovative solutions to help clients manage risks and secure their financial futures.

Infostealer activity detected by HudsonRock

Compromised Employees: 147

Compromised Users: 7396

Third Party Employee Credentials: 81


External Attack Surface: 147


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaintsmarkmonitor.com
  • hostmastermetlife.com
  • whoisrequestmarkmonitor.com
MX Records
  • mx2.hc1983-11.iphmx.com. Cisco/IronPort
  • mx1.hc1983-11.iphmx.com. Cisco/IronPort
  • mx2.metlife.com.
  • mx1.metlife.com.
TXT Records
  • facebook-domain-verification=rx7wl8evvdk3fv5cx911wkwklsir49
  • ZOOM_verify_8msEQ9pqpmU0kP7eRmNOAG
  • SDc+4EOQtfnaUxfyY8URv5amoO0Z65Hk9eks9sDIsl9TOfLNQEblxGLOOltIBwUFRPcOgVusIcGH6ToW9NC1HA==
  • infoblox-domain-mastery=0a7253fd7e76b83fb11e91cab9150698db2d23dda0824d08666e139d5a6495db62
  • v=spf1 include:_spf.metlife.com include:_spf3.metlife.com ~all
  • 00D4F0000008fsG=1TBWK00000001tm
  • flexera-domain-verification-guxkdvxgpulkcizw
  • _sx9sibjgubd8pu9e09j8nkgxioy72vo
  • duo_sso_verification=lmOFE6oJujWqfwYA1wKlUAmdfdcRf3XPvd6HAtsg6rU3GVfbpvIkYBcSurbIaXCX
  • uber-domain-verification=69f944a9-1b5f-4091-9357-619c6539e7a6
  • 94Fa8tWmklE8h5H_2ub0
  • _c36ns9pgyw794wn8hhh6a7hu14s68cc
  • mozhqNTaCe5yQmagnT6o/p8xHvgKvSVhuOaD1X4kbGLbogrLTP4cjkGegPdRRscvZP+ClaTRAQpQPf6iFP9gHw==
  • _ep5wzpowa8tji1lygv53difolzzv659
  • MS=ms19824334
  • google-site-verification=XOk4GzmAUS8cJyPMbmIamq1MtA23y_SLT2XrlBGtsPo
  • google-gws-recovery-domain-verification=66051252
  • hcp-domain-verification=143dc0f7f023aba7cc49c7c034910f2de19f5ec41a639ece0f0a15ec30ff7280
  • SFMC-D0b7aqRgSZF8M4r6SiGn_gymlFcpbBYR5xRY6SQD
  • MS=ms74093254
  • SFMC-v-xHifsATOTzHpzzHIWBOl_Zq0ZlsGh12Tujh7hq
  • 537418cde248ae2dfda6516c6b7b404e481f31cd9b7e560f7483d5bc3007fb5a
  • 00DDS000001gQHA=1TBWr00000003dp
  • google-site-verification=mnzLM4n-vXShKTOtzTKZWuidirXpOikX6tNdiJcMxb8
  • _9dff1jy0x2fjivxykcr0iyf22mb2zgt
  • stripe-verification=BA4FC1EAAD55C999937C337E37F5A6D4FB8DECFA2F2DCDD08A8D3B9465DF68DA
  • flexera-domain-verification-tffrjryoomkacqcv
  • miro-verification=4af63e43eb876c31470b6faf767b1644046ab5d0
  • canva-site-verification=NSp1rubSzsmhGpmGqRBm8w
  • adobe-idp-site-verification=fc57d3e1346858448d2bcf628217aadbc40e774466e76d0a1780a99255d99ae7
  • cloudflare_dashboard_sso=55cf015b7515413c2ec629a90b1a34d7
  • anthropic-domain-verification-6fp5ef=iOf8vBzdFE9bbJ2KUit6pJC6a
  • twilio-domain-verification=758534b1efb07ea5c4bf77f130dc160b
  • 00D5B000000Eug2=1TBdz00000000kn
  • stripe-verification=F801EC919FBB4D01B31AC07B367B5487F5FC6048F98127B00F934B80757B9F38
Cloud / SaaS Services Detected
Adobe Microsoft 365 Stripe Anthropic Miro Flexera Twilio Cisco Duo Zoom

Leak Screenshot:

Leak Screenshot