The attackers utilizing the blacksuit threat actor targeted metromont.com, a company involved in commercial and residential construction, with a ransomware claim aiming to encrypt sensitive data. The incident has impacted the US. #US
Incident Details
- Victim: metromont.com
- Country: US
- Actor: blacksuit
- Source: http://weg7sdx54bevnvulapqu6bpzwztryeflq3s23tegbmnhkbpqz637f2yd.onion/?id=IWHZDVT8f6Q48TLD
- Discovered: 2025-05-29 12:18:58.217046
- Published: 2025-05-29 12:17:52.320012
Information
- Victim: metromont.com
- Country: US
- Perpetrator: Blacksuit
- Sector: Commercial & Residential Construction

Disclaimer: This post is based on public claims made by the ransomware group "blacksuit". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.