Ransom! shuttlemeadowcc.com (JUL-2026)

The D1R threat actor D1R, targeting ARM in GB, exploited leaked Synopsys database information and cross-referenced other group leaks to gain access and investigate remotely, later using Athena Download Manager—requiring an SSL certificate tied to ARM’s parent-owned product infrastructure—to bypass ARM’s 2FA email/SMS checks. This capability severely incapacitated operations despite 2FA protections, ultimately enabling unauthorized downloads from ARM-associated sources and amplifying impact to GB #UnitedKingdom

Read More
Ransom! shuttlemeadowcc.com (JUL-2026)

D1R ransomware activity against Bosch in DE was claimed based on technical leak analysis and cross-referenced targets from TARGETLIST.txt, resulting in unauthorized access and theft of $10,000 gem: Bosch CAN module implementation data. The threat actor says the data will be shared publicly, attributing its roadmap and target discovery to Synopsys. #Germany

Read More
Ransom! shuttlemeadowcc.com (JUL-2026)

Dragonforce reportedly targeted Al – Saidi Factory in Saudi Arabia, claiming ransomware deployment against the Al Saidi Al Saidi Trading and Industry organization, which provides chemical manufacturing and logistics services for the Middle East. The threat actor alleges to have disrupted operations supporting supply chain management, freight forwarding, and Oil & Gas/petrochemical chemical production. #SaudiArabia

Read More