Ransomware victim disclosure
← All victimsDesign Engineering & Consulting
Claimed by AiLock · listed 3 days ago
Status timeline
- Listed
May 18, 2026
- Data leaked
At a glance
- Group
- AiLock
- Status
- Data leaked
- Country
- US
- Sector
- Business Services
- Listed on leak site
- May 18, 2026
About the victim
AI dossier — public-source company profileDesign Engineering & Consulting (DEC) is a Richardson, Texas-based engineering and consulting firm specializing in façade system design, curtainwall engineering, shop drawings, and BIM modeling for commercial and retail buildings. Founded over 25 years ago, the company employs 60+ engineers, architects, and drafters and operates from its Texas headquarters plus satellite offices in Portland, China, Mexico, and the Philippines. DEC has completed thousands of curtainwall design projects globally, including on iconic buildings.
- Industry
- Façade & Curtainwall Engineering Consulting
- Address
- Richardson, Texas, USA
- Employees
- 60+
Attack summary
Severity: high — Data is listed as published by the threat actor, indicating confirmed exfiltration and public disclosure of potentially sensitive engineering/business data including proprietary design files, client project documentation, and structural engineering records for high-profile commercial buildings.The AiLock ransomware group claims to have attacked Design Engineering & Consulting and lists the disclosure status as data_published, indicating exfiltration and/or publication of company data. No specific ransom amount or data volume was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Engineering design files
- Shop drawings
- BIM models
- Project documentation
- Business/client records
What the group claims
Design Engineering & Consulting provides façade system design, shop drawings, engineering, and consulting services in a cost – effective and professional manner across the world.
Sources
- Victim sitedecusa.com
Source
Indexed 3 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
