Classaction AECOM Data Breach Investigation Underway Following Hacker Claims
Article Content
- •AECOM may have suffered a data breach affecting 1.22 terabytes of data.
- •Hacker group Metaencryptor claims responsibility for the attack.
- •Class action lawsuit investigation is underway for affected individuals.
AECOM, a major infrastructure consulting firm, is under investigation for a potential data breach. Reports indicate that the hacker group Metaencryptor claimed responsibility for the attack, which allegedly compromised 1.22 terabytes of data. The breach is believed to have occurred on September 17, 2026, the same day the claims were made public on the dark web monitoring site Ransomware.live. No further details about the breach's scope or nature have been confirmed. AECOM is currently working to assess the situation, and attorneys are seeking information from individuals who may have been affected, including employees and clients. A class action lawsuit may be filed if sufficient evidence of data exposure is gathered. The investigation is ongoing, and affected individuals are encouraged to reach out for legal guidance.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track BrainCipher and Aecom in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Multiple Ransomware Attacks Target Various Organizations Worldwide On September 15, 2026, several organizations were reported as victims of ransomware attacks attributed to different groups, including SAFEPAY and QILIN. Notable victims include laconcepcion.com.mx, a healthcare provider in Mexico, and Wiggins, Childs, Pantazis, Fisher, & Goldfarb LLC, a U.S.-based law firm. The…
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…