Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

NAIVAS WAS HACKED A LARGE AMOUNT OF CONFIDENTIAL DATA HAS BEEN STOLEN

naivas.co.ke

Group Alphv
Discovered 2023-07-26 15:14 UTC
Est. attack date 2023-04-21
Country KE
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

Who is Naivas Our store is more than just another average online retailer. We sell not only top quality products, but give our customers a positive online shopping experience. Headquarters: Sameer Industrial Park Rd C off Enterprise Rdkwa Reuben, Nairobi, Nairobi Area, Kenya Chief Operating Officer at Naivas: Willy Kimani Phone Number: +254 [REDACTED] Website: www.naivas.co.ke Revenue: $333.7M Linkedin: http://www.linkedin.com/company/naivas-limited Facebook: http://www.facebook.com/naivassupermarkets Twitter: http://www.twitter.com/naivas_kenya

Infostealer activity detected by HudsonRock

Compromised Employees: 11

Compromised Users: 514

Third Party Employee Credentials: 21


External Attack Surface: 32


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ebt-domainsSafaricom.co.ke
MX Records
  • naivas-co-ke.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
  • 0ed1fe018a9bbe2a384c01494aa5f49f21c5753308
  • google-site-verification=XSV3ce_rXT0SQMSE_wV-kKFyjs3sW6B6g95MqfO-WNQ
  • MS=957BD76FE3E5E3016721AE8F0FF78E1393A3E218
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot