Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Nimbu IT Services

Nimbu IT Services Vendor Cyber Rating & Cyber Score

nimbuitservices.com

At NIMBU we empower businesses with robust, secure and future-ready IT solutions. Our cutting-edge security infrastructures and advanced data management solutions don’t just store your information; they protect it, ensuring you can move forward confidently, knowing your business is safe. Small and medium-sized businesses (SMBs) often face several common IT-related challenges. Here are the top five problems: > Limited IT Budget and Resources: SMBs typically have tight budgets and limited resources, making it difficult to invest in the latest technology and hire skilled IT staff. > Data Security and Privacy Concerns: With the rise in cyber threats, SMBs need to implement robust cybersecurity measures to protect sensitive information,


NS A.I CyberSecurity Scoring

NS
Company Information
Website:https://www.nimbuitservices.com/
Employees number:2
Number of followers:65
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:nimbuitservices.com
NS Risk Score (AI oriented)
Between 700 and 749
logo
NSIT Services and IT Consulting
Updated:
26/06/2026
730/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
NS Global Score (TPRM)
xxxx
logo
NSIT Services and IT Consulting
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

NS
NSModerate
Current Score
730Ba (MODERATE)
01000
1 incidents
-20 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
750Before Incident
Cyber Attack
25 Jun 2026NS
SendGrid, Nimbu and Amazon Web Services: AiTM Phishing Kits Steal Console Credentials and MFA Codes from AWS Environments

New AiTM Phishing Kit Targets AWS Users in Real-Time Credential Theft

730After Incident
HIGH-20
NIMSENAMA1782455164
New AiTM Phishing Kit Targets AWS Users in Real-Time Credential Theft A sophisticated phishing campaign targeting Amazon Web Services (AWS) users emerged between June 19 and 23, 2026, leveraging an adversary-in-the-middle (AiTM) technique to steal login credentials and multi-factor authentication (MFA) codes in real time. Unlike traditional phishing tools that capture data for later use, this kit intercepts and relays credentials instantly, allowing attackers to access victims’ AWS consoles before they detect the breach rendering MFA protections ineffective. Researchers at Datadog Security Labs uncovered the operation, identifying three phishing domains registered within a 24-hour window via NICENIC INTERNATIONAL GROUP CO., LIMITED and hosted on Cloudflare. The domains served near-identical clones of the AWS login page, designed to evade detection. Attackers distributed phishing emails through trusted platforms like SendGrid and Nimbu, bypassing email authentication filters. The messages impersonated AWS Support, citing a fabricated "bandwidth throttling" issue to create urgency and prompt quick clicks. The campaign stood out for its precision targeting: the phishing kit only displayed the fake login page for pre-verified email addresses, with fewer than 50 victims identified primarily software engineers and engineering leaders in the U.S. The attack relied on a JavaScript-based relay embedded in the phishing page, which validated victims against an encrypted URL parameter before rendering the login form. This mechanism also blocked security sandboxes from analyzing the page’s behavior. Once credentials were entered, the kit forwarded them to the attacker’s server, which relayed them to the legitimate AWS site in real time. The server dynamically determined the MFA challenge type (SMS, email, or TOTP) by interacting with AWS, then captured and replayed the victim’s session before it expired. This live relay distinguishes AiTM attacks from conventional phishing, significantly increasing their success rate. The investigation revealed ties to a broader phishing operation, with three additional domains impersonating SendGrid registered through the same registrar. The kit’s infrastructure including a React-based app structure, encrypted email gating, and MFA support matched earlier campaigns dating back to July 2023, including attacks on cryptocurrency wallets and Salesforce logins. A shared input_24 URL parameter served as a fingerprint linking these incidents to the same threat actor. Security teams can detect potential breaches by monitoring DNS queries to the known phishing domains and reviewing AWS CloudTrail logs for ConsoleLogin events following interactions with those domains. A successful login immediately after phishing site access strongly indicates session hijacking. The campaign underscores the growing threat of real-time AiTM attacks against cloud services, particularly when combined with social engineering and targeted reconnaissance.
INCIDENT DETAILS -
TYPE
Phishing
MOTIVATION
Credential theft, unauthorized access to AWS accounts
IMPACT
Data Compromised: AWS login credentials, MFA codesSystems Affected: AWS consolesOperational Impact: Unauthorized access to cloud resourcesBrand Reputation Impact: Potential reputational damage to AWS and affected organizationsIdentity Theft Risk: High (PII and access credentials compromised)
DATA BREACH
Type Of Data Compromised: Login credentials, MFA codesNumber Of Records Exposed: <50Sensitivity Of Data: High (AWS access credentials)Personally Identifiable Information: Potentially (depends on AWS account contents)
MAY 2026
750Before Incident
APRIL 2026
750Before Incident
MARCH 2026
750Before Incident
FEBRUARY 2026
750Before Incident
JANUARY 2026
750Before Incident
DECEMBER 2025
750Before Incident
NOVEMBER 2025
750Before Incident
OCTOBER 2025
750Before Incident
SEPTEMBER 2025
750Before Incident
AUGUST 2025
750Before Incident
JULY 2025
750Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for NS ?
?
What was NS's A.I Rankiteo Cyber Score in May 2026 ?
?
What was NS's A.I Rankiteo Cyber Score in April 2026 ?
?
What was NS's A.I Rankiteo Cyber Score in March 2026 ?
?
What was NS's A.I Rankiteo Cyber Score in February 2026 ?
?
What was NS's A.I Rankiteo Cyber Score in January 2026 ?
?
What was NS's A.I Rankiteo Cyber Score in December 2025 ?
?
What was NS's A.I Rankiteo Cyber Score in November 2025 ?
?
What was NS's A.I Rankiteo Cyber Score in October 2025 ?
?
What was NS's A.I Rankiteo Cyber Score in September 2025 ?
?
What was NS's A.I Rankiteo Cyber Score in August 2025 ?
?
What was NS's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on NS's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with NS ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view NS's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Nimbu IT Services Cyber Scoring History | Rankiteo