Thursday, January 12, 2023

LinkedIn Impersonation by RightNowTech

I was locked out of LinkedIn from Saturday night to yesterday. Was anything posted on my account (and then deleted)?

Here is the threat actor's information below. They are running a lock-out and Identity Theft scam, requesting ID be uploaded to "LinkedIn", when it really goes to their criminal group. Already altered LinkedIn, and contacted attorney, but please feel free to check your safety, and make any additional report to LinkedIn too. As a collective, we should all be safe, and implore LinkedIn to take action against these Threat Actors, as well as all companies who host them. Thank you.


Wed, 11 Jan 2023 06:38:50 +0100 (CET)

Received-SPF: Softfail (mailfrom) identity=mailfrom; client-ip=130.35.144.141; helo=rntac72.rnmk.com


RNMK is registered to RightNowTech with a 416 area code, Canada.

Name: Tucows Domains Inc.

IANA ID: 69

Abuse contact email: domainabuse@tucows.com

Abuse contact phone: tel:+1.4165350123


They're using a T1 server hosted by Oracle.

IP Address Location Information for 130.35.144.141

ASN: 31898

Organization: Oracle Corporation

ASN IP Range: 130.35.128.0/19

No alt text provided for this image