Ransomware victim disclosure
← All victimsRafael Viñoly Architects
Claimed by Blacksuit · listed 2 years ago
Status timeline
- ListedMay 6, 2024
- Data leakeddate unknown
At a glance
- Group
- Blacksuit
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- May 6, 2024
About the victim
AI dossier — public-source company profileRafael Viñoly Architects is an internationally renowned architectural practice founded in 1983 and headquartered in New York City. With offices across six continents, the firm specializes in institutional and civic building design, known for reinventing building typologies and integrating public space into their projects.
- Industry
- Architecture & Design
- Address
- New York City, New York, USA (headquarters); with offices in London, Manchester, Abu Dhabi, Buenos Aires, Chicago, and Palo Alto
- Founded
- 1983
Attack summary
Severity: medium — Data has been published by the ransomware group with no stated ransom, indicating a mature breach disclosure. However, the specific nature and sensitivity of the data exposed are not detailed in the available leak post excerpt, and no proof files or data inventory is described.Blacksuit claims to have compromised Rafael Viñoly Architects and published data from the breach. The group's post does not specify whether encryption, exfiltration, or both occurred, nor does it detail the nature of the exfiltrated data.
What the group claims
Rafael Viñoly Architects, founded in 1983 and based in New York City — with offices in London, Manchester, Abu Dhabi, Buenos Aires, Chicago, and Palo Alto — is an internationally renowned architectural firm with projects spanning six continents. Over the past thirty-three years, the practice’s key trademark is its ability to reinvent institutional typologies and integrate the public realm into civic buildings.
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

