Ransomware Group Dark Project Hits: MEI Architects
Summary
In the latest cybersecurity news, MEI Architects — an organization based in SG — has fallen victim to a ransomware attack conducted by the group Dark Project. This data breach, discovered on 2026-09-07T22:20:59.692694+00:00, underscores the increasing need for proactive cybersecurity defenses as we continue through 2026.
Incident Report
| Attribute | Information |
|---|---|
| Target Organization | MEI Architects |
| Threat Group | Dark Project |
| Summary | About MEI Architects MEI Architects is a firm based in San Francisco that specializes in commercial, residential, and public architecture. They provide elegant and pragmatic solutions tailored for government, nonprofit, and private clients. Their portfolio includes notable projects such as the Portsmouth Square Improvement Project and the VA Palo Alto Polytrauma Aquatic Therapy Center. The firm is committed to community-minded design and successful partnerships. As a result of the attack, 340 GB of data (approximately 130,000 files) was stolen: including Social Security numbers, passports, green cards, invoices, HR documents, and a vast number of architectural drawings—including those from past and current projects, as well as those currently under construction. |
| Date of Breach | 2026-09-07T21:53:01.086172+00:00 |
| Discovery Date | 2026-09-07T22:20:59.692694+00:00 |
| Region | SG |
| Target Domain | www.meiarchitects.com |
| Business Sector | Professional Services |
How to reduce your ransomware risk
Most ransomware intrusions start with a stolen password or a phishing email. A few proactive steps sharply cut your exposure:
- train staff to spot attacks — close the gap attackers exploit.
- monitor the dark web for leaked logins — close the gap attackers exploit.
Want to know if you’re already exposed? Run a free scan with the HookPhish data breach checker.
Disclaimer
HookPhish does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.
