Ransomware victim disclosure
← All victimsCannonDesign
Claimed by dunghill · listed 3 years ago
Status timeline
- Listed
Sep 26, 2023
- Data leaked
At a glance
- Group
- dunghill
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Sep 26, 2023
About the victim
AI dossier — public-source company profileCannonDesign is a global architecture, engineering, and consulting firm headquartered in the United States. The firm delivers services across a broad range of project types including hospitals, corporate offices, higher education, hospitality, sports facilities, and science and research buildings. It has been recognized by Fast Company as one of the 10 most innovative architecture firms in the world in 2017 and 2019.
- Industry
- Architecture, Engineering & Consulting
- Employees
- 1001-5000
Attack summary
Severity: high — Data has been published by the threat actor, confirming exfiltration. CannonDesign works extensively with healthcare, government, and education clients, meaning exfiltrated data likely includes sensitive project and client information of significant business and potentially regulatory consequence.The Dunghill ransomware group claims to have attacked CannonDesign and has published data (disclosed status: data_published), indicating exfiltration of company data. No specific ransom amount or data volume was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Company internal data
- Project documentation
- Client records
- Employee information
What the group claims
CannonDesign is a global architecture, engineering and consulting practice that provides services for a range of project types, including hospitals and medical centers, corporate headquarters and commercial office buildings, higher education and PK-12 education facilities, hotels and hospitality, mixed-use, sports facilities, and science and research buildings. In 2017 and 2019, Fast Company named CannonDesign one of the 10 most innovative architecture firms in the world.
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
