Ransomware Attacks Build Against Saudi Construction Firms
ID: d93a542f-4011-5a2a-8d89-b75a423e4507
STIX ID: report--d93a542f-4011-5a2a-8d89-b75a423e4507
Feed Name: Dark Reading
DragonForce, a ransomware-as-a-service group, claimed to have stolen about 6 TB of data from Saudi construction firm Al Bawani and posted a data-leak entry after the company failed to pay a ransom; leaked materials reportedly included photographs and plans for sensitive facilities. The report highlights a regional uptick in RaaS activity targeting construction and real estate firms across the Middle East, notes possible but unconfirmed links to China or Iran (including one early-stage C2 in Iran), and references broader trends where RaaS lowers attack barriers and increases ransomware incidents in the region.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
