Ransomware victim disclosure
← All victimsMEI Architects
Claimed by Dark Project · listed 5 days ago
Status timeline
- ListedSep 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Dark Project
- Status
- Data leaked
- Country
- Singapore
- Sector
- Professional Services
- Listed on leak site
- Sep 7, 2026
About the victim
AI dossier — public-source company profileMEI Architects is an architecture firm based in San Francisco specializing in commercial, residential, and public architecture. They serve government, nonprofit, and private clients, with a portfolio including healthcare facilities, public infrastructure, and community projects.
- Industry
- Architecture & Design
- Address
- San Francisco, CA, USA
Attack summary
Severity: low — The leak post is vague and generic, offering no substantive evidence of data theft, encryption, or operational impact. No proof files, screenshots, or data samples are advertised. The post appears to be a generic outreach message rather than a credible breach disclosure.Dark Project claims to have compromised MEI Architects but the leak post contains no specific details about data exfiltration, encryption, or the nature of the breach. No data samples or proof files are referenced.
What the group claims
About MEI Architects MEI Architects is a firm based in San Francisco that specializes in commercial, residential, and public architecture. They provide elegant and pragmatic solutions tailored for government, nonprofit, and private clients. Their portfolio includes notable projects such as the Portsmouth Square Improvement Project and the VA Palo Alto Polytrauma Aquatic Therapy Center. The firm is committed to community-minded design and successful partnerships. As a result of the attack, 340 GB of data (approximately 130,000 files) was stolen: including Social Security numbers, passports, green cards, invoices, HR documents, and a vast number of architectural drawings—including those from past and current projects, as well as those currently under construction.
The leak post
captured from the group's siteIf you’re a journalist, blogger, or have access to corporate networks, we’d love to connect with you. For any inquiries or if you encounter issues with our website, feel free to reach out at the email provided.
Sources
Source
Indexed 5 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

