Ransomware victim disclosure
← All victimsDreyfuss + Blackford Architecture
Claimed by Hunters · listed 2 years ago
Status timeline
- ListedOct 4, 2024
- Data leakeddate unknown
At a glance
- Group
- Hunters
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Oct 4, 2024
About the victim
AI dossier — public-source company profileDreyfuss + Blackford Architecture is a Sacramento-based architectural firm founded in 1950 with a 75-year legacy designing major public and institutional projects across Northern California. The firm has designed government offices, university buildings, cultural institutions, and critical infrastructure facilities including airports, utility headquarters, and state office complexes.
- Industry
- Architecture & Design Services
- Address
- Sacramento, CA, United States (primary office location inferred from website)
- Founded
- 1950
Attack summary
Severity: medium — Confirmed exfiltration and encryption of an architecture firm with access to sensitive government and critical infrastructure project data; however, no specific regulated data categories confirmed and no proof files quantified in the post.The hunters group claims to have both encrypted systems and exfiltrated data from Dreyfuss + Blackford Architecture. No specific data categories or operational impact details are disclosed in the leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Project files and architectural designs
- Client information (government agencies, public institutions)
- Business records
- Internal communications
What the group claims
Country : United States of America - Exfiltraded data : yes - Encrypted data : yes
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

