Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Hunt Intelligence, Inc.

Hunt Intelligence, Inc. Vendor Cyber Rating & Cyber Score

hunt.io

Hunt.io is a service that provides threat intelligence data about observed network scanning and cyberattacks. This data is collected by a worldwide distributed network of sensors. All interactions with sensors are registered, analyzed, and used to create network host profiles.


HII A.I CyberSecurity Scoring

HII
Company Information
Website:https://hunt.io
Employees number:12
Number of followers:3,438
NAICS:513
Industry Type:Technology, Information and Internet
Homepage:hunt.io
HII Risk Score (AI oriented)
Between 700 and 749
logo
HIITechnology, Information and Internet
Updated:
06/05/2026
715/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
HII Global Score (TPRM)
xxxx
logo
HIITechnology, Information and Internet
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

HII
HIIModerate
Current Score
715Ba (MODERATE)
01000
1 incidents
-31 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
735Before Incident
MAY 2026
734Before Incident
APRIL 2026
734Before Incident
MARCH 2026
733Before Incident
FEBRUARY 2026
733Before Incident
JANUARY 2026
764Before Incident
Cyber Attack
15 Jan 2026HII
Ctrl-Alt-Intel and AWS: Suspected DPRK Threat Actors Compromise Crypto Firms, Steal Keys and Cloud Assets in Coordinated Attacks

North Korea-Linked Hackers Target Crypto Supply Chain in Coordinated Campaign

733After Incident
LOW-31
HUNAWS1772735373
North Korea-Linked Hackers Target Crypto Supply Chain in Coordinated Campaign A sophisticated cyberattack campaign, attributed to North Korea-linked threat actors, has targeted multiple layers of the cryptocurrency supply chain, compromising staking platforms, exchange software providers, and exchanges themselves. The operation, uncovered in January 2026, resulted in the theft of proprietary source code, private keys, and cloud-stored secrets, marking one of the most calculated intrusions in the crypto sector in recent months. The attackers employed two distinct intrusion methods: exploiting CVE-2025-55182, a vulnerability in the React2Shell framework, to breach crypto staking platforms, and leveraging stolen AWS access tokens to bypass initial exploitation and directly infiltrate cloud infrastructure. Researchers at Ctrl-Alt-Intel gained rare insight into the attackers’ operations after discovering exposed open directories containing shell history logs, archived source code, and tool configurations, revealing the full scope of the campaign. Among the stolen assets were .env files containing hardcoded private keys for Tron blockchain wallets, with blockchain records showing 52.6 TRX transferred during the exploitation window though it remains unclear whether the North Korea-linked actors or another threat group executed the transfer. Additionally, compromised Docker container images from a cryptocurrency exchange contained hardcoded database credentials, internal configurations, and proprietary exchange logic, aligning with North Korea’s documented strategy of pre-positioning for large-scale crypto theft. In the AWS-focused phase, the attackers conducted broad enumeration of EC2 instances, RDS databases, S3 buckets, Lambda functions, and EKS clusters, using grep searches to extract sensitive files like .pem, .key, and .ppk credentials. They also downloaded Terraform state files, which often store infrastructure secrets, and pivoted into Kubernetes clusters by updating kubeconfig files. Once inside, they exfiltrated ConfigMaps, Kubernetes Secrets, and Docker container images in plaintext. For command-and-control, the threat actors deployed VShell on port 8082 and used FRP as a tunneling proxy over port 53 (DNS), evading standard network monitoring. Connections to their primary VPS were routed over IPv6, further bypassing detection tools designed for IPv4 traffic. The campaign underscores the attackers’ meticulous planning and deep access to critical crypto infrastructure.
INCIDENT DETAILS -
TYPE
Supply Chain AttackData BreachCloud Infrastructure Compromise
MOTIVATION
Financial gainTheft of cryptocurrency assets
IMPACT
Proprietary source codePrivate keysCloud-stored secrets.env filesDocker container imagesDatabase credentialsTerraform state filesKubernetes SecretsConfigMapsCrypto staking platformsExchange software providersCryptocurrency exchangesAWS cloud infrastructure (EC2, RDS, S3, Lambda, EKS)Operational Impact: Compromise of critical crypto infrastructure and potential large-scale crypto theft
DATA BREACH
Proprietary source codePrivate keysCloud-stored secretsDatabase credentialsTerraform state filesKubernetes SecretsConfigMapsSensitivity Of Data: High.env.pem.key.ppk
DECEMBER 2025
764Before Incident
NOVEMBER 2025
764Before Incident
OCTOBER 2025
764Before Incident
SEPTEMBER 2025
764Before Incident
AUGUST 2025
764Before Incident
JULY 2025
764Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for HII ?
?
What was HII's A.I Rankiteo Cyber Score in May 2026 ?
?
What was HII's A.I Rankiteo Cyber Score in April 2026 ?
?
What was HII's A.I Rankiteo Cyber Score in March 2026 ?
?
What was HII's A.I Rankiteo Cyber Score in February 2026 ?
?
What was HII's A.I Rankiteo Cyber Score in January 2026 ?
?
What was HII's A.I Rankiteo Cyber Score in December 2025 ?
?
What was HII's A.I Rankiteo Cyber Score in November 2025 ?
?
What was HII's A.I Rankiteo Cyber Score in October 2025 ?
?
What was HII's A.I Rankiteo Cyber Score in September 2025 ?
?
What was HII's A.I Rankiteo Cyber Score in August 2025 ?
?
What was HII's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on HII's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with HII ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view HII's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?