Skip to content
Metaencryptor Ransomware Attack Targets AECOM

Metaencryptor Ransomware Attack Targets AECOM

First seen 18 Sep 2026, 00:27 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 19, 2026 at 00:25 UTC
  • AECOM suffered a ransomware attack by Metaencryptor, affecting 1.22 terabytes of data.
  • The attack was discovered on September 17, 2026, with investigations ongoing.
  • Class action lawsuits may be pursued by affected individuals against AECOM.

AECOM, a Texas-based infrastructure consulting firm, reportedly suffered a ransomware attack attributed to the hacker group Metaencryptor. The breach, which was discovered on September 17, 2026, is believed to have compromised approximately 1.22 terabytes of data. The attack was confirmed by dark web monitoring site Ransomware.live and corroborated by cybersecurity blog HookPhish. AECOM has not yet provided detailed information regarding the scope or nature of the breach. Legal investigations are underway, with attorneys seeking to file a class action lawsuit on behalf of affected individuals, including current and former employees and clients. The incident highlights the ongoing threat of ransomware attacks in 2026 and the need for enhanced cybersecurity measures. As of now, there are no known details about specific vulnerabilities exploited during the attack.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-09-17
Metaencryptor attacks AECOM
AECOM's data breach was discovered, with 1.22 terabytes of data reportedly compromised.
HookPhish
2026-09-17
Class action investigation begins
ClassAction.org starts investigating potential class action lawsuits for affected individuals.
Classaction

More articles in this cluster (12)

Following this threat?

Track BrainCipher and Aecom in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed