Back Ransomware.Live 🏴☠️ Nightspire has just published a new victim : DiamondLease
This domain's FortiOS SSL-VPN credentials were exposed via the "FortiBleed" leak ( CVE-2022-40684 ).
The following DNS records were found for the victim's domain.
binoy.kaladi diamondlease.com
diamondlease-com.mail.protection.outlook.com. Microsoft 365
v=spf1 ip4:185.56.88.169 ip4:185.56.88.168 include:mlrcloud.com include:spf.protection.outlook.com -all
Vp1zSAnzdpobVCLVJd12g+sJxN5z+jbxaFs2yY5RhRQ=
C2R5xXuoCHyIutX1mzsfa4OcY+DI4lsprJMluw6FtWA=
google-site-verification=oh1q2JiLRImqB5oPLZi2aUKvFkQUtkFbTrO47FCxIKE
google-site-verification=OZuk_DVeKoe7enjqU8lck63Q0n4xBfaMN1AaevGoKB0
selector1-diamondlease-com._domainkey.diamondleasellc.onmicrosoft.com
selector2-diamondlease-com._domainkey.diamondleasellc.onmicrosoft.com
Legal Disclaimer: Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession, hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data. This platform indexes only publicly visible information posted by ransomware operators and open web sources without accessing or obtaining the underlying stolen content . The service is provided to support public awareness, legitimate research, and cyber-resilience. No stolen personal or confidential data is collected or distributed via this site.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
