Ransomware victim disclosure
← All victimsDome+Partners
listed as Dome Partners · Claimed by Thegentlemen · listed 4 months ago
Status timeline
- ListedFeb 6, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Feb 6, 2026
About the victim
AI dossier — public-source company profileDome+Partners is an Istanbul-based architecture and urban planning firm operating internationally, with projects spanning Turkey, Germany, Kazakhstan, and Uzbekistan. The firm focuses on residential, mixed-use, cultural, and urban planning developments, emphasizing modern aesthetics, functionality, and sustainability. Notable projects include Rams Park House (Istanbul), Ramsburg (Germany), and the Almaty Museum of Art (Kazakhstan).
- Industry
- Architecture & Urban Planning
- Address
- Balmumcu Mah. Bestekar Şevki Bey Sok. No:56 PK:34349 Beşiktaş - İstanbul/Türkiye
Attack summary
Severity: medium — Data is listed as published, indicating claimed exfiltration, but the leak post is inaccessible (bot-check wall) so no proof files, data volume, or sensitive data categories can be verified; moderate severity assigned based on disclosed status alone with no confirmed regulated or sensitive data.The ransomware group 'thegentlemen' claims to have attacked Dome+Partners and lists the disclosure status as data_published, suggesting data exfiltration has occurred; however, the leak post content is obscured by a bot-verification page, preventing confirmation of specific claims or proof materials.
What the group claims
dome.ws zoominfo.com/c/dome-partners/425321491 Dome+Partners specializes in architecture and urban planning, focusing on blending modern aesthetics with functionality. They offer a range of projects including mixed-use developments, cultural institutions, and residential spaces across various countries. The company is committed to sustainability and environmentally-friendly practices, ensuring that their designs harmonize with natural surroundings. Their intended clients include municipalities
The leak post
captured from the group's siteGentlecloud Protection 🛡️ Gentlecloud Verifying your browser... Initializing security checks... I'm not a bot
Sources
- Victim sitedome.ws
- Leak posthttp://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

